6.4
CVSSv2

CVE-2011-1000

Published: 19/02/2011 Updated: 17/08/2017
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

jingle-factory.c in Telepathy Gabble 0.11 prior to 0.11.7, 0.10 prior to 0.10.5, and 0.8 prior to 0.8.15 allows remote malicious users to sniff audio and video calls via a crafted google:jingleinfo stanza that specifies an alternate server for streamed media.

Vulnerable Product Search on Vulmon Subscribe to Product

freedesktop telepathy gabble 0.11.2

freedesktop telepathy gabble 0.11.3

freedesktop telepathy gabble 0.11.6

freedesktop telepathy gabble 0.11.4

freedesktop telepathy gabble 0.11.5

freedesktop telepathy gabble 0.11

freedesktop telepathy gabble 0.11.1

freedesktop telepathy gabble 0.10.2

freedesktop telepathy gabble 0.10.3

freedesktop telepathy gabble 0.10.4

freedesktop telepathy gabble 0.10

freedesktop telepathy gabble 0.10.1

freedesktop telepathy gabble 0.8.4

freedesktop telepathy gabble 0.8.5

freedesktop telepathy gabble 0.8.6

freedesktop telepathy gabble 0.8.13

freedesktop telepathy gabble 0.8.14

freedesktop telepathy gabble 0.8

freedesktop telepathy gabble 0.8.1

freedesktop telepathy gabble 0.8.9

freedesktop telepathy gabble 0.8.10

freedesktop telepathy gabble 0.8.7

freedesktop telepathy gabble 0.8.8

freedesktop telepathy gabble 0.8.2

freedesktop telepathy gabble 0.8.3

freedesktop telepathy gabble 0.8.11

freedesktop telepathy gabble 0.8.12