CVE-2004-0500
Fedora Legacy Update Advisory 1237
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Buffer overflow in the MSN protocol plugins (1) object.c and (2) slp.c for Gaim before 0.82 allows remote attackers to cause a denial of service and possibly execute arbitrary code via MSNSLP protocol messages that are not properly handled in a strncpy call.
Desbordamiento de búfer en los conectores de protocolo MSN (1) object.c y (2) slp.c en Gaim anteriores a 0.83 permite a atacantes remotos causar una denegación de servicio y posiblemente ejecutar código de su elección mediante mensajes de protocolo MSNSLP que no son manejados adecuadamene por una llamada strncpy.
FLSA:1237. Updated gaim package resolves security issues. Corrects multiple buffer overflows in Gaim 0.75 and earlier, including Yahoo cookie buffer overflows, YMSG protocol overflows, and flaws in URL and proxy handling.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2004-05-27 CVE Reserved
- 2004-09-02 CVE Published
- 2024-08-08 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (11)
URL | Tag | Source |
---|---|---|
http://gaim.sourceforge.net/security/?id=0 | X_refsource_confirm | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/16920 | Vdb Entry | |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9429 | Signature |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.gentoo.org/security/en/glsa/glsa-200408-12.xml | 2017-10-11 | |
http://www.securityfocus.com/bid/10865 | 2017-10-11 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.10 Search vendor "Rob Flynn" for product "Gaim" and version "0.10" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.10.3 Search vendor "Rob Flynn" for product "Gaim" and version "0.10.3" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.50 Search vendor "Rob Flynn" for product "Gaim" and version "0.50" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.51 Search vendor "Rob Flynn" for product "Gaim" and version "0.51" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.52 Search vendor "Rob Flynn" for product "Gaim" and version "0.52" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.53 Search vendor "Rob Flynn" for product "Gaim" and version "0.53" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.54 Search vendor "Rob Flynn" for product "Gaim" and version "0.54" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.55 Search vendor "Rob Flynn" for product "Gaim" and version "0.55" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.56 Search vendor "Rob Flynn" for product "Gaim" and version "0.56" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.57 Search vendor "Rob Flynn" for product "Gaim" and version "0.57" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.58 Search vendor "Rob Flynn" for product "Gaim" and version "0.58" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.59 Search vendor "Rob Flynn" for product "Gaim" and version "0.59" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.59.1 Search vendor "Rob Flynn" for product "Gaim" and version "0.59.1" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.60 Search vendor "Rob Flynn" for product "Gaim" and version "0.60" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.61 Search vendor "Rob Flynn" for product "Gaim" and version "0.61" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.62 Search vendor "Rob Flynn" for product "Gaim" and version "0.62" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.63 Search vendor "Rob Flynn" for product "Gaim" and version "0.63" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.64 Search vendor "Rob Flynn" for product "Gaim" and version "0.64" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.65 Search vendor "Rob Flynn" for product "Gaim" and version "0.65" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.66 Search vendor "Rob Flynn" for product "Gaim" and version "0.66" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.67 Search vendor "Rob Flynn" for product "Gaim" and version "0.67" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.68 Search vendor "Rob Flynn" for product "Gaim" and version "0.68" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.69 Search vendor "Rob Flynn" for product "Gaim" and version "0.69" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.70 Search vendor "Rob Flynn" for product "Gaim" and version "0.70" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.71 Search vendor "Rob Flynn" for product "Gaim" and version "0.71" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.72 Search vendor "Rob Flynn" for product "Gaim" and version "0.72" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.73 Search vendor "Rob Flynn" for product "Gaim" and version "0.73" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.74 Search vendor "Rob Flynn" for product "Gaim" and version "0.74" | - |
Affected
| ||||||
Rob Flynn Search vendor "Rob Flynn" | Gaim Search vendor "Rob Flynn" for product "Gaim" | 0.75 Search vendor "Rob Flynn" for product "Gaim" and version "0.75" | - |
Affected
| ||||||
Gentoo Search vendor "Gentoo" | Linux Search vendor "Gentoo" for product "Linux" | 1.4 Search vendor "Gentoo" for product "Linux" and version "1.4" | - |
Affected
| ||||||
Mandrakesoft Search vendor "Mandrakesoft" | Mandrake Linux Search vendor "Mandrakesoft" for product "Mandrake Linux" | 9.2 Search vendor "Mandrakesoft" for product "Mandrake Linux" and version "9.2" | - |
Affected
| ||||||
Mandrakesoft Search vendor "Mandrakesoft" | Mandrake Linux Search vendor "Mandrakesoft" for product "Mandrake Linux" | 9.2 Search vendor "Mandrakesoft" for product "Mandrake Linux" and version "9.2" | amd64 |
Affected
| ||||||
Mandrakesoft Search vendor "Mandrakesoft" | Mandrake Linux Search vendor "Mandrakesoft" for product "Mandrake Linux" | 10.0 Search vendor "Mandrakesoft" for product "Mandrake Linux" and version "10.0" | - |
Affected
| ||||||
Mandrakesoft Search vendor "Mandrakesoft" | Mandrake Linux Search vendor "Mandrakesoft" for product "Mandrake Linux" | 10.0 Search vendor "Mandrakesoft" for product "Mandrake Linux" and version "10.0" | amd64 |
Affected
|