Описание
Gajim before 0.16.5 allows remote attackers to modify the roster and intercept messages via a crafted roster-push IQ stanza.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| gajim | fixed | 0.16.5-0.1 | package |
Примечания
http://gultsch.de/gajim_roster_push_and_message_interception.html
https://trac.gajim.org/changeset/af78b7c068904d78c5dfb802826aae99f26a8947/
EPSS
Процентиль: 68%
0.00556
Низкий
Связанные уязвимости
CVSS3: 5.4
ubuntu
около 10 лет назад
Gajim before 0.16.5 allows remote attackers to modify the roster and intercept messages via a crafted roster-push IQ stanza.
CVSS3: 5.4
nvd
около 10 лет назад
Gajim before 0.16.5 allows remote attackers to modify the roster and intercept messages via a crafted roster-push IQ stanza.
CVSS3: 5.4
github
больше 3 лет назад
Gajim before 0.16.5 allows remote attackers to modify the roster and intercept messages via a crafted roster-push IQ stanza.
EPSS
Процентиль: 68%
0.00556
Низкий