PSI Jabber client prior to 0.12.1 allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via a file transfer request with a negative value in a SOCKS5 option, which bypasses a signed integer check and triggers an integer overflow and a heap-based buffer overflow.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
psi-im psi 0.9.2 |
||
psi-im psi 0.9.1 |
||
psi-im psi 0.1.0 |
||
psi-im psi 0.9.3 |
||
psi-im psi |
||
psi-im psi 0.11 |
||
psi-im psi 0.8.6 |
||
psi-im psi 0.9 |
||
psi-im psi 0.8.7 |