Sandino Flores Moreno Gaim Festival Plug-in Remote Denial Of Service Vulnerability
BID:11805
Info
Sandino Flores Moreno Gaim Festival Plug-in Remote Denial Of Service Vulnerability
| Bugtraq ID: | 11805 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 03 2004 12:00AM |
| Updated: | Dec 03 2004 12:00AM |
| Credit: | Discovery of this vulnerability is credited to ratjed and netsniper. |
| Vulnerable: |
Sandino Flores Moreno Gaim Festival Plug-in 1.0 Sandino Flores Moreno Gaim Festival Plug-in 0.81 Sandino Flores Moreno Gaim Festival Plug-in 0.78 Sandino Flores Moreno Gaim Festival Plug-in 0.77 Sandino Flores Moreno Gaim Festival Plug-in 0.76 Sandino Flores Moreno Gaim Festival Plug-in 0.71 Sandino Flores Moreno Gaim Festival Plug-in 0.70 Sandino Flores Moreno Gaim Festival Plug-in 0.68.2 Sandino Flores Moreno Gaim Festival Plug-in 0.68 |
| Not Vulnerable: | |
Discussion
Sandino Flores Moreno Gaim Festival Plug-in Remote Denial Of Service Vulnerability
The Gaim Festival Plug-in is reported prone to a remote denial of service vulnerability. Reports indicate that the plug-in does not handle certain characters correctly and will crash if these characters are parsed from an incoming message.
A remote attacker may exploit this condition to deny service to legitimate users. Further attacks may also be possible.
The Gaim Festival Plug-in is reported prone to a remote denial of service vulnerability. Reports indicate that the plug-in does not handle certain characters correctly and will crash if these characters are parsed from an incoming message.
A remote attacker may exploit this condition to deny service to legitimate users. Further attacks may also be possible.
Exploit / POC
Sandino Flores Moreno Gaim Festival Plug-in Remote Denial Of Service Vulnerability
No exploit is required.
No exploit is required.
Solution / Fix
Sandino Flores Moreno Gaim Festival Plug-in Remote Denial Of Service Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Sandino Flores Moreno Gaim Festival Plug-in Remote Denial Of Service Vulnerability
References:
References:
- Festival-Gaim Homepage (Sandino Flores Moreno)