CVE
- Id
- 9213
- CVE No.
- CVE-2004-0785
- Status
- Candidate
- Description
- Multiple buffer overflows in Gaim before 0.82 allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) Rich Text Format (RTF) messages, (2) a long hostname for the local system as obtained from DNS, or (3) a long URL that is not properly handled by the URL decoder.
- Phase
- Assigned (20040817)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
60454 | 9213 | CVE-2004-0785 | CONFIRM:http://gaim.sourceforge.net/security/?id=3 | View |
60455 | 9213 | CVE-2004-0785 | CONFIRM:http://gaim.sourceforge.net/security/?id=4 | View |
60456 | 9213 | CVE-2004-0785 | CONFIRM:http://gaim.sourceforge.net/security/?id=5 | View |
60457 | 9213 | CVE-2004-0785 | FEDORA:FEDORA-2004-278 | View |
60458 | 9213 | CVE-2004-0785 | URL:http://www.fedoranews.org/updates/FEDORA-2004-278.shtml | View |
60459 | 9213 | CVE-2004-0785 | FEDORA:FEDORA-2004-279 | View |
60460 | 9213 | CVE-2004-0785 | URL:http://www.fedoranews.org/updates/FEDORA-2004-279.shtml | View |
60461 | 9213 | CVE-2004-0785 | GENTOO:GLSA-200408-27 | View |
60462 | 9213 | CVE-2004-0785 | URL:http://www.gentoo.org/security/en/glsa/glsa-200408-27.xml | View |
60463 | 9213 | CVE-2004-0785 | REDHAT:RHSA-2004:400 | View |
60464 | 9213 | CVE-2004-0785 | URL:http://www.redhat.com/support/errata/RHSA-2004-400.html | View |
60465 | 9213 | CVE-2004-0785 | BID:11056 | View |
60466 | 9213 | CVE-2004-0785 | URL:http://www.securityfocus.com/bid/11056 | View |
60467 | 9213 | CVE-2004-0785 | OSVDB:9261 | View |
60468 | 9213 | CVE-2004-0785 | URL:http://www.osvdb.org/9261 | View |
60469 | 9213 | CVE-2004-0785 | OSVDB:9262 | View |
60470 | 9213 | CVE-2004-0785 | URL:http://www.osvdb.org/9262 | View |
60471 | 9213 | CVE-2004-0785 | OSVDB:9263 | View |
60472 | 9213 | CVE-2004-0785 | URL:http://www.osvdb.org/9263 | View |
60473 | 9213 | CVE-2004-0785 | OVAL:oval:org.mitre.oval:def:10907 | View |
60474 | 9213 | CVE-2004-0785 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10907 | View |
60475 | 9213 | CVE-2004-0785 | SECTRACK:1011083 | View |
60476 | 9213 | CVE-2004-0785 | URL:http://securitytracker.com/id?1011083 | View |
60477 | 9213 | CVE-2004-0785 | SECUNIA:12383 | View |
60478 | 9213 | CVE-2004-0785 | URL:http://secunia.com/advisories/12383 | View |
60479 | 9213 | CVE-2004-0785 | SECUNIA:12480 | View |
60480 | 9213 | CVE-2004-0785 | URL:http://secunia.com/advisories/12480 | View |
60481 | 9213 | CVE-2004-0785 | SECUNIA:12929 | View |
60482 | 9213 | CVE-2004-0785 | URL:http://secunia.com/advisories/12929 | View |
60483 | 9213 | CVE-2004-0785 | SECUNIA:13101 | View |
60484 | 9213 | CVE-2004-0785 | URL:http://secunia.com/advisories/13101 | View |
60485 | 9213 | CVE-2004-0785 | XF:gaim-hostname-bo(17142) | View |
60486 | 9213 | CVE-2004-0785 | URL:http://xforce.iss.net/xforce/xfdb/17142 | View |
60487 | 9213 | CVE-2004-0785 | XF:gaim-rtf-bo(17141) | View |
60488 | 9213 | CVE-2004-0785 | URL:http://xforce.iss.net/xforce/xfdb/17141 | View |
60489 | 9213 | CVE-2004-0785 | XF:gaim-url-bo(17143) | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
63049 | JVNDB-2004-000391 | Apache HTTP Server の apr-util ライブラリにおけるサービス運用妨害 (DoS) の脆弱性 | Apache の apr-util ライブラリには、apr_uri_parse 関数における IPv6 アドレスの妥当性の確認が不適切であるために、負の値を持つパラメータが memcpy() 関数に渡されてしまい、Request-URI または Host ヘッダにリテラル IPv6 アドレスを含む HTTP リクエストを受信した場合、Apahce HTTP Server の子プロセスがクラッシュしてしまう脆弱性が存在します。 | CVE-2004-0786 | 9213 | 5 | http://jvndb.jvn.jp/ja/contents/2004/JVNDB-2004-000391.html | View |