5
CVSSv2

CVE-2005-0208

Published: 02/05/2005 Updated: 19/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The HTML parsing functions in Gaim prior to 1.1.4 allow remote malicious users to cause a denial of service (application crash) via malformed HTML that causes "an invalid memory access," a different vulnerability than CVE-2005-0473.

Vulnerable Product Search on Vulmon Subscribe to Product

rob flynn gaim 1.1.2

rob flynn gaim 1.1.3

rob flynn gaim 1.1.0

rob flynn gaim 1.1.1

Vendor Advisories

Synopsis gaim security update Type/Severity Security Advisory: Important Topic An updated gaim package that fixes various security issues as well as anumber of bugs is now availableThis update has been rated as having important security impact by the RedHat Security Response Team Description ...
The Gaim developers discovered that the HTML parser did not sufficiently validate its input This allowed a remote attacker to crash the Gaim client by sending certain malformed HTML messages (CAN-2005-0208, CAN-2005-0473) ...