Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown

CVE-2012-1187

Disclosure Date: October 29, 2019 (last updated November 27, 2024)
Bitlbee does not drop extra group privileges correctly in unix.c
Attacker Value
Unknown

CVE-2016-10189

Disclosure Date: March 14, 2017 (last updated November 26, 2024)
BitlBee before 3.5 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) and possibly execute arbitrary code via a file transfer request for a contact that is not in the contact list.
0
Attacker Value
Unknown

CVE-2016-10188

Disclosure Date: March 14, 2017 (last updated November 26, 2024)
Use-after-free vulnerability in bitlbee-libpurple before 3.5 allows remote servers to cause a denial of service (crash) or possibly execute arbitrary code by causing a file transfer connection to expire.
0
Attacker Value
Unknown

CVE-2017-5668

Disclosure Date: March 14, 2017 (last updated November 26, 2024)
bitlbee-libpurple before 3.5.1 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) and possibly execute arbitrary code via a file transfer request for a contact that is not in the contact list. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-10189.
0
Attacker Value
Unknown

CVE-2008-3969

Disclosure Date: September 11, 2008 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in BitlBee before 1.2.3 allow remote attackers to "overwrite" and "hijack" existing accounts via unknown vectors related to "inconsistent handling of the USTATUS_IDENTIFIED state." NOTE: this issue exists because of an incomplete fix for CVE-2008-3920.
0
Attacker Value
Unknown

CVE-2008-3920

Disclosure Date: September 04, 2008 (last updated October 04, 2023)
Unspecified vulnerability in BitlBee before 1.2.2 allows remote attackers to "recreate" and "hijack" existing accounts via unspecified vectors.
0