CVE-2005-0965: Medium severity Rob Flynn Gaim vulnerability
Published Apr 4, 2005
·Updated
The gaimmarkupstriphtml function in Gaim 1.2.0, and possibly earlier versions, allows remote attackers to cause a denial of service (application crash) via a string that contains malformed HTML, which causes an out-of-bounds read.
Affected Software
1 affected component
Rob Flynn Gaim=1.2.0
Remediation
Patch Available
Event History
Apr 4, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-0965?
CVE-2005-0965 has a severity rating that indicates it can lead to denial of service through application crashes.
2
How do I fix CVE-2005-0965?
To fix CVE-2005-0965, update Gaim to the latest version that addresses this vulnerability.
3
Which versions of Gaim are affected by CVE-2005-0965?
Gaim versions prior to 1.2.0, including 1.2.0 itself, are affected by CVE-2005-0965.
4
What types of attacks does CVE-2005-0965 enable?
CVE-2005-0965 allows remote attackers to cause a denial of service by sending specially crafted malformed HTML.
5
Is there a workaround for CVE-2005-0965?
A possible workaround for CVE-2005-0965 is to avoid the use of Gaim until an update is available.