5
CVSSv2

CVE-2014-8483

Published: 06/11/2014 Updated: 30/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The blowfishECB function in core/cipher.cpp in Quassel IRC 0.10.0 allows remote malicious users to cause a denial of service (out-of-bounds read) via a malformed string.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

canonical ubuntu linux 12.04

debian debian linux 7.0

quassel-irc quassel irc 0.10.0

opensuse opensuse 13.1

opensuse opensuse 13.2

opensuse opensuse 12.3

Vendor Advisories

Debian Bug report logs - #766962 CVE-2014-8483: quassel: out-of-bounds read issue Package: quassel; Maintainer for quassel is Debian KDE Extras Team <pkg-kde-extras@listsaliothdebianorg>; Source for quassel is src:quassel (PTS, buildd, popcon) Reported by: Henri Salo <henri@nervfi> Date: Mon, 27 Oct 2014 09:06:02 ...
Konversation could be made to crash if it received specially crafted network traffic ...