Google Talk Email Notification Denial Of Service Vulnerability
BID:15369
Info
Google Talk Email Notification Denial Of Service Vulnerability
| Bugtraq ID: | 15369 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2005-3678 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 09 2005 12:00AM |
| Updated: | Jul 12 2009 05:56PM |
| Credit: | [email protected] is credited with the discovery of this vulnerability. |
| Vulnerable: |
Google Talk |
| Not Vulnerable: |
Google Talk 1.0 .0.76 |
Discussion
Google Talk Email Notification Denial Of Service Vulnerability
Google Talk is prone to a denial of service vulnerability. This is due to a programming error in which exceptional conditions cause the victim to have to interact and close multiple error popup windows.
Specially crafted email messages may be repeatedly sent by an attacker to deny service to the client application user.
Google Talk is prone to a denial of service vulnerability. This is due to a programming error in which exceptional conditions cause the victim to have to interact and close multiple error popup windows.
Specially crafted email messages may be repeatedly sent by an attacker to deny service to the client application user.
Exploit / POC
Google Talk Email Notification Denial Of Service Vulnerability
An exploit is not required.
An exploit is not required.
Solution / Fix
Google Talk Email Notification Denial Of Service Vulnerability
Solution:
This issue has been addressed in Google Talk versions 1.0.0.76 and later. Users with Google Talk installed will be automatically updated.
Solution:
This issue has been addressed in Google Talk versions 1.0.0.76 and later. Users with Google Talk installed will be automatically updated.
References
Google Talk Email Notification Denial Of Service Vulnerability
References:
References:
- Google Talk Website (Google)
- New Bug KESM in GoogleTalk ([email protected])
- Re: New Bug KESM in GoogleTalk (Cory Altheide
)