CVE-2005-3960: High severity Kadu Kadu vulnerability
Published Dec 1, 2005
·Updated
Kadu 0.4.2 and 0.5.0pre allows remote attackers to cause a denial of service (crash or generated traffic) via a malformed message, possibly with incomplete information.
Affected Software
2 affected components
Kadu Kadu=0.4.2
Kadu Kadu=0.5_pre
Event History
Dec 1, 2005
CVE Published
06:03 AM
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-3960?
CVE-2005-3960 is classified as a denial of service vulnerability that can crash the Kadu application.
2
How do I fix CVE-2005-3960?
To fix CVE-2005-3960, update to Kadu versions beyond 0.5.0pre that mitigate the malformed message issue.
3
What versions of Kadu are affected by CVE-2005-3960?
CVE-2005-3960 affects Kadu versions 0.4.2 and 0.5.0pre.
4
What type of attack does CVE-2005-3960 describe?
CVE-2005-3960 describes a remote denial of service attack that can cause the Kadu application to crash.
5
Can CVE-2005-3960 be exploited remotely?
Yes, CVE-2005-3960 can be exploited remotely through specially crafted messages.