The smiley theme functionality in Gaim prior to 0.82 allows remote malicious users to execute arbitrary commands via shell metacharacters in the filename of the tar file that is dragged to the smiley selector.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
rob flynn gaim 0.10 |
||
rob flynn gaim 0.10.3 |
||
rob flynn gaim 0.56 |
||
rob flynn gaim 0.57 |
||
rob flynn gaim 0.58 |
||
rob flynn gaim 0.64 |
||
rob flynn gaim 0.65 |
||
rob flynn gaim 0.72 |
||
rob flynn gaim 0.73 |
||
rob flynn gaim 0.50 |
||
rob flynn gaim 0.51 |
||
rob flynn gaim 0.59 |
||
rob flynn gaim 0.59.1 |
||
rob flynn gaim 0.66 |
||
rob flynn gaim 0.54 |
||
rob flynn gaim 0.55 |
||
rob flynn gaim 0.62 |
||
rob flynn gaim 0.63 |
||
rob flynn gaim 0.70 |
||
rob flynn gaim 0.71 |
||
rob flynn gaim 0.67 |
||
rob flynn gaim 0.74 |
||
rob flynn gaim 0.75 |
||
rob flynn gaim 0.52 |
||
rob flynn gaim 0.53 |
||
rob flynn gaim 0.60 |
||
rob flynn gaim 0.61 |
||
rob flynn gaim 0.68 |
||
rob flynn gaim 0.69 |