CVE-2011-5129: Buffer Overflow
Published Aug 30, 2012
·Updated
Heap-based buffer overflow in XChat 2.8.9 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long response string.
Affected Software
59 affected components
Xchat xchat<=2.8.9
Xchat xchat=1.2.1
Xchat xchat=1.3.9
Xchat xchat=1.3.10
Xchat xchat=1.3.11
Xchat xchat=1.3.12
Xchat xchat=1.3.13
Xchat xchat=1.4
Xchat xchat=1.4.1
Xchat xchat=1.4.2
Xchat xchat=1.4.3
Xchat xchat=1.5.6
Xchat xchat=1.8.0
Xchat xchat=1.8.1
Xchat xchat=1.8.2
Xchat xchat=1.8.3
Xchat xchat=1.8.4
Xchat xchat=1.8.5
Xchat xchat=1.8.6
Xchat xchat=1.8.7
Xchat xchat=1.8.8
Xchat xchat=1.8.9
Xchat xchat=1.9.0
Xchat xchat=1.9.1
Xchat xchat=1.9.2
Xchat xchat=1.9.3
Xchat xchat=1.9.4
Xchat xchat=1.9.5
Xchat xchat=1.9.6
Xchat xchat=1.9.7
Xchat xchat=1.9.8
Xchat xchat=1.9.9
Xchat xchat=2.0.0
Xchat xchat=2.0.1
Xchat xchat=2.0.2
Xchat xchat=2.0.3
Xchat xchat=2.0.4
Xchat xchat=2.0.5
Xchat xchat=2.0.6
Xchat xchat=2.0.7
Xchat xchat=2.0.8
Xchat xchat=2.6.7
Xchat xchat=2.8.0
Xchat xchat=2.8.1
Xchat xchat=2.8.3
Xchat xchat=2.8.3-c
Xchat xchat=2.8.3-e
Xchat xchat=2.8.4
Xchat xchat=2.8.5-b
Xchat xchat=2.8.5-e
Xchat xchat=2.8.6
Xchat xchat=2.8.7-a
Xchat xchat=2.8.7-b
Xchat xchat=2.8.7-c
Xchat xchat=2.8.7-d
Xchat xchat=2.8.7-e
Xchat xchat=2.8.7-f
Xchat xchat=2.8.7b
Xchat xchat=2.8.8
Event History
Aug 30, 2012
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-5129?
CVE-2011-5129 is classified as a high-severity vulnerability due to its potential to cause denial of service and execute arbitrary code.
2
How do I fix CVE-2011-5129?
To fix CVE-2011-5129, upgrade to XChat version 2.8.10 or later.
3
What types of attacks can exploit CVE-2011-5129?
CVE-2011-5129 can be exploited by sending a specially crafted long response string to the application.
4
Which versions of XChat are affected by CVE-2011-5129?
XChat versions 2.8.9 and earlier, along with multiple earlier versions, are affected by CVE-2011-5129.
5
What are the potential impacts of CVE-2011-5129?
The impacts of CVE-2011-5129 include application crashes and the potential for remote code execution.