Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-10376

Опубликовано: 28 мая 2017
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 3.5
CVSS3: 4.5

Описание

Gajim through 0.16.7 unconditionally implements the "XEP-0146: Remote Controlling Clients" extension. This can be abused by malicious XMPP servers to, for example, extract plaintext from OTR encrypted sessions.

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

0.16.6-1.1
cosmic

not-affected

0.16.6-1.1
devel

not-affected

0.16.6-1.1
disco

not-affected

0.16.6-1.1
eoan

not-affected

0.16.6-1.1
esm-apps-legacy/xenial

needed

esm-apps/bionic

not-affected

0.16.6-1.1
esm-apps/focal

not-affected

0.16.6-1.1
esm-apps/jammy

not-affected

0.16.6-1.1

Показывать по

EPSS

Процентиль: 65%
0.01153
Низкий

3.5 Low

CVSS2

4.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.5
nvd
больше 9 лет назад

Gajim through 0.16.7 unconditionally implements the "XEP-0146: Remote Controlling Clients" extension. This can be abused by malicious XMPP servers to, for example, extract plaintext from OTR encrypted sessions.

CVSS3: 4.5
debian
больше 9 лет назад

Gajim through 0.16.7 unconditionally implements the "XEP-0146: Remote ...

suse-cvrf
около 9 лет назад

Security update for gajim

CVSS3: 4.5
github
больше 4 лет назад

Gajim through 0.16.7 unconditionally implements the "XEP-0146: Remote Controlling Clients" extension. This can be abused by malicious XMPP servers to, for example, extract plaintext from OTR encrypted sessions.

EPSS

Процентиль: 65%
0.01153
Низкий

3.5 Low

CVSS2

4.5 Medium

CVSS3