Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2011-5129

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2011-5129
Last Modified 13 Feb 2013 11:47:28
Published 30 Aug 2012 06:55:03
Confidentiality Impact NONE NONE
Integrity Impact NONE NONE
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2011-5129

Summary

Heap-based buffer overflow in XChat 2.8.9 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long response string.

Vulnerable Systems

Application

  • Xchat 1.2.1

  • Xchat 1.3.10

  • Xchat 1.3.11

  • Xchat 1.3.12

  • Xchat 1.3.13

  • Xchat 1.3.9

  • Xchat 1.4

  • Xchat 1.4.1

  • Xchat 1.4.2

  • Xchat 1.4.3

  • Xchat 1.5.6

  • Xchat 1.8.0

  • Xchat 1.8.1

  • Xchat 1.8.2

  • Xchat 1.8.3

  • Xchat 1.8.4

  • Xchat 1.8.5

  • Xchat 1.8.6

  • Xchat 1.8.7

  • Xchat 1.8.8

  • Xchat 1.8.9

  • Xchat 1.9.0

  • Xchat 1.9.1

  • Xchat 1.9.2

  • Xchat 1.9.3

  • Xchat 1.9.4

  • Xchat 1.9.5

  • Xchat 1.9.6

  • Xchat 1.9.7

  • Xchat 1.9.8

  • Xchat 1.9.9

  • Xchat 2.0.0

  • Xchat 2.0.1

  • Xchat 2.0.2

  • Xchat 2.0.3

  • Xchat 2.0.4

  • Xchat 2.0.5

  • Xchat 2.0.6

  • Xchat 2.0.7

  • Xchat 2.0.8

  • Xchat 2.6.7

  • Xchat 2.8.0

  • Xchat 2.8.1

  • Xchat 2.8.3

  • Xchat 2.8.4

  • Xchat 2.8.5

  • Xchat 2.8.6

  • Xchat 2.8.7

  • Xchat 2.8.7b

  • Xchat 2.8.8

  • Xchat 2.8.9


References

BID - 50820

OSVDB - 77629

EXPLOIT-DB - 18159

MISC - http://packetstormsecurity.org/files/107312/xchat-dos.txt

SECTRACK - 1027468


Last Updated: 27 May 2016 11:00:25