Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-10376

Опубликовано: 28 мая 2017
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 3.5
CVSS3: 4.5

Описание

Gajim through 0.16.7 unconditionally implements the "XEP-0146: Remote Controlling Clients" extension. This can be abused by malicious XMPP servers to, for example, extract plaintext from OTR encrypted sessions.

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

0.16.6-1.1
cosmic

not-affected

0.16.6-1.1
devel

not-affected

0.16.6-1.1
disco

not-affected

0.16.6-1.1
eoan

not-affected

0.16.6-1.1
esm-apps/bionic

not-affected

0.16.6-1.1
esm-apps/focal

not-affected

0.16.6-1.1
esm-apps/jammy

not-affected

0.16.6-1.1
esm-apps/noble

not-affected

0.16.6-1.1

Показывать по

EPSS

Процентиль: 66%
0.00523
Низкий

3.5 Low

CVSS2

4.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.5
nvd
больше 8 лет назад

Gajim through 0.16.7 unconditionally implements the "XEP-0146: Remote Controlling Clients" extension. This can be abused by malicious XMPP servers to, for example, extract plaintext from OTR encrypted sessions.

CVSS3: 4.5
debian
больше 8 лет назад

Gajim through 0.16.7 unconditionally implements the "XEP-0146: Remote ...

suse-cvrf
больше 8 лет назад

Security update for gajim

CVSS3: 4.5
github
больше 3 лет назад

Gajim through 0.16.7 unconditionally implements the "XEP-0146: Remote Controlling Clients" extension. This can be abused by malicious XMPP servers to, for example, extract plaintext from OTR encrypted sessions.

EPSS

Процентиль: 66%
0.00523
Низкий

3.5 Low

CVSS2

4.5 Medium

CVSS3