First published: Thu Sep 02 2004(Updated: )
Integer overflow in Gaim before 0.82 allows remote attackers to cause a denial of service and possibly execute arbitrary code via the size variable in Groupware server messages.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Gaim | =0.71 | |
Gaim | =0.10.3 | |
Gaim | =0.61 | |
Gaim | =0.53 | |
Gaim | =0.73 | |
Gaim | =0.60 | |
Gaim | =0.69 | |
Gaim | =0.52 | |
Gaim | =0.72 | |
Gaim | =0.65 | |
Gaim | =0.59 | |
Gaim | =0.62 | |
Gaim | =0.74 | |
Gaim | =0.51 | |
Gaim | =0.56 | |
Gaim | =0.54 | |
Gaim | =0.55 | |
Gaim | =0.68 | |
Gaim | =0.67 | |
Gaim | =0.10 | |
Gaim | =0.59.1 | |
Gaim | =0.70 | |
Gaim | =0.50 | |
Gaim | =0.66 | |
Gaim | =0.63 | |
Gaim | =0.64 | |
Gaim | =0.58 | |
Gaim | =0.75 | |
Gaim | =0.57 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-0754 is considered a high severity vulnerability due to its potential to cause denial of service and arbitrary code execution.
To fix CVE-2004-0754, you should update Gaim to version 0.82 or later, which includes a patch for this vulnerability.
CVE-2004-0754 affects multiple Gaim versions including 0.10, 0.61, 0.71, and others prior to 0.82.
CVE-2004-0754 allows remote attackers to conduct a denial of service and may enable the execution of arbitrary code.
The vendor associated with CVE-2004-0754 is Rob Flynn, the developer of Gaim messaging software.