5
CVSSv2

CVE-2006-4126

Published: 14/08/2006 Updated: 17/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The dc_chat function in cmd.dc.c in DConnect Daemon 0.7.0 and previous versions allows remote malicious users to cause a denial of service (application crash) by sending a client message before providing the nickname, which triggers a null pointer dereference.

Vulnerable Product Search on Vulmon Subscribe to Product

dconnect dconnect daemon 0.0.2

dconnect dconnect daemon 0.0.3

dconnect dconnect daemon 0.7.0

Exploits

source: wwwsecurityfocuscom/bid/19370/info DConnect Daemon is prone to a denial-of-service vulnerability This issue occurs because the application fails to handle null-pointer exceptions properly An attacker can exploit this issue to crash the server, causing a denial-of-service Version 070, CVS July 30th 2006 and prior versions ...