CVE Vulnerabilities

CVE-2004-1378

Published: Sep 21, 2004 | Modified: Jul 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

The expat XML parser code, as used in the open source Jabber (jabberd) 1.4.3 and earlier, jadc2s 0.9.0 and earlier, and possibly other packages, allows remote attackers to cause a denial of service (application crash) via a malformed packet to a socket that accepts XML connections.

Affected Software

Name Vendor Start Version End Version
Jabberd Jabberstudio 1.4 1.4
Jabberd Jabberstudio 1.4.1 1.4.1
Jabberd Jabberstudio 1.4.2 1.4.2
Jabberd Jabberstudio 1.4.2a 1.4.2a
Jabberd Jabberstudio 1.4.3 1.4.3
Jadc2s Jabberstudio 0.6 0.6
Jadc2s Jabberstudio 0.7 0.7
Jadc2s Jabberstudio 0.8 0.8
Jadc2s Jabberstudio 0.9 0.9

References