CVE Vulnerabilities

CVE-2007-4897

Published: Sep 14, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

pwlib, as used by Ekiga 2.0.5 and possibly other products, allows remote attackers to cause a denial of service (application crash) via a long argument to the PString::vsprintf function, related to a memory management flaw. NOTE: this issue was originally reported as being in the SIPURL::GetHostAddress function in Ekiga (formerly GnomeMeeting).

Affected Software

NameVendorStart VersionEnd Version
EkigaEkiga2.0.5 (including)2.0.5 (including)
Red Hat Enterprise Linux 5RedHatpwlib-0:1.10.1-7.0.1.el5*
PwlibUbuntudapper*
PwlibUbuntudevel*
PwlibUbuntuedgy*
PwlibUbuntufeisty*
PwlibUbuntugutsy*
PwlibUbuntuupstream*

References