7.5
CVSSv2

CVE-2005-2369

Published: 26/07/2005 Updated: 11/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple integer signedness errors in libgadu, as used in ekg prior to 1.6rc2 and other packages, may allow remote malicious users to cause a denial of service or execute arbitrary code.

Vulnerable Product Search on Vulmon Subscribe to Product

ekg ekg 1.1

ekg ekg 1.3

ekg ekg 2005-06-05

ekg ekg 1.6_rc1

ekg ekg 2005-04-11

ekg ekg 1.4

ekg ekg 1.5

Vendor Advisories

Synopsis kdenetwork security update Type/Severity Security Advisory: Critical Topic Updated kdenetwork packages to correct a security flaw in Kopete are nowavailable for Red Hat Enterprise Linux 4This update has been rated as having critical security impact by the RedHat Security Response Team De ...
Marcin Owsiany and Wojtek Kaniewski discovered that some contributed scripts (contrib/ekgh, contrib/ekgnvsh, and contrib/getekgsh) in the ekg package created temporary files in an insecure way, which allowed exploitation of a race condition to create or overwrite files with the privileges of the user invoking the script (CAN-2005-1850) ...