pwlib, as used by Ekiga 2.0.5 and possibly other products, allows remote attackers to cause a denial of service (application crash) via a long argument to the PString::vsprintf function, related to a memory management flaw. NOTE: this issue was originally reported as being in the SIPURL::GetHostAddress function in Ekiga (formerly GnomeMeeting).
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ekiga | Ekiga | 2.0.5 (including) | 2.0.5 (including) |
Pwlib | Ubuntu | dapper | * |
Pwlib | Ubuntu | devel | * |
Pwlib | Ubuntu | edgy | * |
Pwlib | Ubuntu | feisty | * |
Pwlib | Ubuntu | gutsy | * |
Pwlib | Ubuntu | upstream | * |
Red Hat Enterprise Linux 5 | RedHat | pwlib-0:1.10.1-7.0.1.el5 | * |