Oval Definition:oval:org.mitre.oval:tst:30434
Comment:gaim is earlier than 1:0.82.1-0.RHEL3
Type:rpminfo_testNamespace:linux
Check_Existence:at_least_one_existsCheck:at least one
State Operator:AND
References
Object:oval:org.mitre.oval:obj:14159
State:oval:org.mitre.oval:ste:9563
Referencing Definitions
Definition IDClassTitleLast Modified
oval:org.mitre.oval:def:9429
V
Buffer overflow in the MSN protocol plugins (1) object.c and (2) slp.c for Gaim before 0.82 allows remote attackers to cause a denial of service and possibly execute arbitrary code via MSNSLP protocol messages that are not properly handled in a strncpy call.
2013-04-29
oval:org.mitre.oval:def:10008
V
The smiley theme functionality in Gaim before 0.82 allows remote attackers to execute arbitrary commands via shell metacharacters in the filename of the tar file that is dragged to the smiley selector.
2013-04-29
oval:org.mitre.oval:def:10220
V
Integer overflow in Gaim before 0.82 allows remote attackers to cause a denial of service and possibly execute arbitrary code via the size variable in Groupware server messages.
2013-04-29
oval:org.mitre.oval:def:10907
V
Multiple buffer overflows in Gaim before 0.82 allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) Rich Text Format (RTF) messages, (2) a long hostname for the local system as obtained from DNS, or (3) a long URL that is not properly handled by the URL decoder.
2013-04-29
BACK