Multiple integer overflows in libgadu, as used in Kopete in KDE 3.2.3 to 3.4.1, ekg before 1.6rc3, GNU Gadu, CenterICQ, Kadu, and other packages, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an incoming message.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ekg | Ekg | 1.0 (including) | 1.0 (including) |
Ekg | Ekg | 1.0_rc2 (including) | 1.0_rc2 (including) |
Ekg | Ekg | 1.0_rc3 (including) | 1.0_rc3 (including) |
Ekg | Ekg | 1.1 (including) | 1.1 (including) |
Ekg | Ekg | 1.1_rc1 (including) | 1.1_rc1 (including) |
Ekg | Ekg | 1.1_rc2 (including) | 1.1_rc2 (including) |
Ekg | Ekg | 1.3 (including) | 1.3 (including) |
Ekg | Ekg | 1.4 (including) | 1.4 (including) |
Ekg | Ekg | 1.5 (including) | 1.5 (including) |
Ekg | Ekg | 1.5_rc1 (including) | 1.5_rc1 (including) |
Ekg | Ekg | 1.5_rc2 (including) | 1.5_rc2 (including) |
Red Hat Enterprise Linux 4 | RedHat | kdenetwork-7:3.3.1-2.3 | * |
Ekg | Ubuntu | dapper | * |
Ekg | Ubuntu | devel | * |
Ekg | Ubuntu | edgy | * |
Ekg | Ubuntu | feisty | * |