CVE-2009-2260: Infoleak
Published Jun 30, 2009
·Updated
stardict 3.0.1, when Enable Net Dict is configured, sends the contents of the clipboard to a dictionary server, which allows remote attackers to obtain sensitive information by sniffing the network.
Affected Software
2 affected componentsFixes available
stardict stardict=3.0.1
debian/stardict
3.0.7+git20220909+dfsg-43.0.7+git20220909+dfsg-8~deb13u13.0.7+git20220909+dfsg-9
Event History
Jun 30, 2009
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Data Sourced
via NVD·10:30 AM
DescriptionSeverityWeaknessAffected Software
Aug 8, 2025
News Published
via The Register·03:29 PM
News Published
via The Register·03:33 PM
Nov 15, 2025
Data Sourced
via Debian·09:34 PM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2009-2260?
CVE-2009-2260 has a medium severity rating due to its potential to expose sensitive information.
2
How do I fix CVE-2009-2260?
To fix CVE-2009-2260, upgrade to Stardict version 3.0.7 or later.
3
What does CVE-2009-2260 affect?
CVE-2009-2260 specifically affects Stardict version 3.0.1 when 'Enable Net Dict' is configured.
4
What information is exposed in CVE-2009-2260?
CVE-2009-2260 can expose the contents of the clipboard to a dictionary server.
5
Who can exploit CVE-2009-2260?
Remote attackers can exploit CVE-2009-2260 by sniffing the network traffic.