Описание
MCabber before 1.0.4 is vulnerable to roster push attacks, which allows remote attackers to intercept communications, or add themselves as an entity on a 3rd party's roster as another user, which will also garner associated privileges, via crafted XMPP packets.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | ignored | end of life |
| bionic | not-affected | 1.0.4-1 |
| cosmic | not-affected | 1.0.4-1 |
| devel | not-affected | 1.0.4-1 |
| disco | not-affected | 1.0.4-1 |
| eoan | not-affected | 1.0.4-1 |
| esm-apps/bionic | not-affected | 1.0.4-1 |
| esm-apps/focal | not-affected | 1.0.4-1 |
| esm-apps/xenial | released | 0.10.2-1+deb8u1build0.16.04.1 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was needed] |
Показывать по
5.8 Medium
CVSS2
7.4 High
CVSS3
Связанные уязвимости
MCabber before 1.0.4 is vulnerable to roster push attacks, which allows remote attackers to intercept communications, or add themselves as an entity on a 3rd party's roster as another user, which will also garner associated privileges, via crafted XMPP packets.
MCabber before 1.0.4 is vulnerable to roster push attacks, which allow ...
MCabber before 1.0.4 is vulnerable to roster push attacks, which allows remote attackers to intercept communications, or add themselves as an entity on a 3rd party's roster as another user, which will also garner associated privileges, via crafted XMPP packets.
5.8 Medium
CVSS2
7.4 High
CVSS3