Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2011-1000

Опубликовано: 19 фев. 2011
Источник: nvd
CVSS2: 6.4
EPSS Низкий

Описание

jingle-factory.c in Telepathy Gabble 0.11 before 0.11.7, 0.10 before 0.10.5, and 0.8 before 0.8.15 allows remote attackers to sniff audio and video calls via a crafted google:jingleinfo stanza that specifies an alternate server for streamed media.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:freedesktop:telepathy_gabble:0.11:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:telepathy_gabble:0.11.1:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:telepathy_gabble:0.11.2:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:telepathy_gabble:0.11.3:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:telepathy_gabble:0.11.4:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:telepathy_gabble:0.11.5:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:telepathy_gabble:0.11.6:*:*:*:*:*:*:*
Конфигурация 2

Одно из

cpe:2.3:a:freedesktop:telepathy_gabble:0.10:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:telepathy_gabble:0.10.1:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:telepathy_gabble:0.10.2:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:telepathy_gabble:0.10.3:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:telepathy_gabble:0.10.4:*:*:*:*:*:*:*
Конфигурация 3

Одно из

cpe:2.3:a:freedesktop:telepathy_gabble:0.8:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:telepathy_gabble:0.8.1:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:telepathy_gabble:0.8.2:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:telepathy_gabble:0.8.3:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:telepathy_gabble:0.8.4:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:telepathy_gabble:0.8.5:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:telepathy_gabble:0.8.6:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:telepathy_gabble:0.8.7:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:telepathy_gabble:0.8.8:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:telepathy_gabble:0.8.9:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:telepathy_gabble:0.8.10:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:telepathy_gabble:0.8.11:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:telepathy_gabble:0.8.12:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:telepathy_gabble:0.8.13:*:*:*:*:*:*:*
cpe:2.3:a:freedesktop:telepathy_gabble:0.8.14:*:*:*:*:*:*:*

EPSS

Процентиль: 79%
0.01261
Низкий

6.4 Medium

CVSS2

Дефекты

CWE-20

Связанные уязвимости

ubuntu
почти 15 лет назад

jingle-factory.c in Telepathy Gabble 0.11 before 0.11.7, 0.10 before 0.10.5, and 0.8 before 0.8.15 allows remote attackers to sniff audio and video calls via a crafted google:jingleinfo stanza that specifies an alternate server for streamed media.

debian
почти 15 лет назад

jingle-factory.c in Telepathy Gabble 0.11 before 0.11.7, 0.10 before 0 ...

github
больше 3 лет назад

jingle-factory.c in Telepathy Gabble 0.11 before 0.11.7, 0.10 before 0.10.5, and 0.8 before 0.8.15 allows remote attackers to sniff audio and video calls via a crafted google:jingleinfo stanza that specifies an alternate server for streamed media.

EPSS

Процентиль: 79%
0.01261
Низкий

6.4 Medium

CVSS2

Дефекты

CWE-20