PT-2005-4632 · Gadu Gadu · Gadu-Gadu

Blazej Miga

+1

·

Published

2005-11-29

·

Updated

2017-07-20

·

CVE-2005-3888

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Gadu-Gadu version 7.20
Description A memory leak issue allows remote attackers to cause a denial of service. This is achieved by sending multiple DCC packets with a code other than 2 and a large size field, which allocates memory for the packet but does not free it after the packet has been dropped.
Recommendations For Gadu-Gadu version 7.20, at the moment, there is no information about a newer version that contains a fix for this issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-3888

Affected Products

Gadu-Gadu