CVE Vulnerabilities

CVE-2004-1378

Published: Sep 21, 2004 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The expat XML parser code, as used in the open source Jabber (jabberd) 1.4.3 and earlier, jadc2s 0.9.0 and earlier, and possibly other packages, allows remote attackers to cause a denial of service (application crash) via a malformed packet to a socket that accepts XML connections.

Affected Software

NameVendorStart VersionEnd Version
JabberdJabberstudio1.4 (including)1.4 (including)
JabberdJabberstudio1.4.1 (including)1.4.1 (including)
JabberdJabberstudio1.4.2 (including)1.4.2 (including)
JabberdJabberstudio1.4.2a (including)1.4.2a (including)
JabberdJabberstudio1.4.3 (including)1.4.3 (including)
Jadc2sJabberstudio0.6 (including)0.6 (including)
Jadc2sJabberstudio0.7 (including)0.7 (including)
Jadc2sJabberstudio0.8 (including)0.8 (including)
Jadc2sJabberstudio0.9 (including)0.9 (including)

References