Show filters
30 Total Results
Displaying 21-30 of 30
Sort by:
Attacker Value
Unknown
CVE-2004-0500
Disclosure Date: September 28, 2004 (last updated February 22, 2025)
Buffer overflow in the MSN protocol plugins (1) object.c and (2) slp.c for Gaim before 0.82 allows remote attackers to cause a denial of service and possibly execute arbitrary code via MSNSLP protocol messages that are not properly handled in a strncpy call.
0
Attacker Value
Unknown
CVE-2004-0005
Disclosure Date: March 03, 2004 (last updated February 22, 2025)
Multiple buffer overflows in Gaim 0.75 allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) octal encoding in yahoo_decode that causes a null byte to be written beyond the buffer, (2) octal encoding in yahoo_decode that causes a pointer to reference memory beyond the terminating null byte, (3) a quoted printable string to the gaim_quotedp_decode MIME decoder that causes a null byte to be written beyond the buffer, and (4) quoted printable encoding in gaim_quotedp_decode that causes a pointer to reference memory beyond the terminating null byte.
0
Attacker Value
Unknown
CVE-2004-0006
Disclosure Date: March 03, 2004 (last updated February 22, 2025)
Multiple buffer overflows in Gaim 0.75 and earlier, and Ultramagnetic before 0.81, allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) cookies in a Yahoo web connection, (2) a long name parameter in the Yahoo login web page, (3) a long value parameter in the Yahoo login page, (4) a YMSG packet, (5) the URL parser, and (6) HTTP proxy connect.
0
Attacker Value
Unknown
CVE-2004-0007
Disclosure Date: March 03, 2004 (last updated February 22, 2025)
Buffer overflow in the Extract Info Field Function for (1) MSN and (2) YMSG protocol handlers in Gaim 0.74 and earlier, and Ultramagnetic before 0.81, allows remote attackers to cause a denial of service and possibly execute arbitrary code.
0
Attacker Value
Unknown
CVE-2004-0008
Disclosure Date: March 03, 2004 (last updated February 22, 2025)
Integer overflow in Gaim 0.74 and earlier, and Ultramagnetic before 0.81, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a directIM packet that triggers a heap-based buffer overflow.
0
Attacker Value
Unknown
CVE-2003-0163
Disclosure Date: May 05, 2003 (last updated February 22, 2025)
decrypt_msg for the Gaim-Encryption GAIM plugin 1.15 and earlier does not properly validate a message length parameter, which allows remote attackers to cause a denial of service (crash) via a negative length, which overwrites arbitrary heap memory with a zero byte.
0
Attacker Value
Unknown
CVE-2002-0384
Disclosure Date: October 04, 2002 (last updated February 22, 2025)
Buffer overflow in Jabber plug-in for Gaim client before 0.58 allows remote attackers to execute arbitrary code.
0
Attacker Value
Unknown
CVE-2002-0989
Disclosure Date: September 24, 2002 (last updated February 22, 2025)
The URL handler in the manual browser option for Gaim before 0.59.1 allows remote attackers to execute arbitrary script via shell metacharacters in a link.
0
Attacker Value
Unknown
CVE-2002-0377
Disclosure Date: May 29, 2002 (last updated February 22, 2025)
Gaim 0.57 stores sensitive information in world-readable and group-writable files in the /tmp directory, which allows local users to access MSN web email accounts of other users who run Gaim by reading authentication information from the files.
0
Attacker Value
Unknown
CVE-2000-1172
Disclosure Date: January 09, 2001 (last updated February 22, 2025)
Buffer overflow in Gaim 0.10.3 and earlier using the OSCAR protocol allows remote attackers to conduct a denial of service and possibly execute arbitrary commands via a long HTML tag.
0