Boletines de Vulnerabilidades

DSA-2852 libgadu - heap-based buffer overflow


Información sobre el sistema

   
Software afectado Debian

Descripción

Yves Younan and Ryan Pentney discovered that libgadu, a library foraccessing the Gadu-Gadu instant messaging service, contained aninteger overflow leading to a buffer overflow. Attackers whichimpersonate the server could crash clients and potentially executearbitrary code.

More info:

http://www.debian.org/security/2014/dsa-2852

Identificadores estándar

Propiedad Valor
CVE CVE-2013-6487 and DSA-2852.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2014-02-08

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT