Title : Redhat Security Update Fixes Gaim Buffer Overflow Vulnerability VUPEN ID : VUPEN/ADV-2005-1371 CVE ID : CVE-2005-2103 CWE ID : CWE-
Rated as : High Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2005-08-10
Technical Description
Redhat has released updated packages to correct a vulnerability identified in Gaim. This flaw is due to a heap overflow error in the way Gaim processes away messages, which may be exploited by attackers to execute arbitrary commands by sending a specially crafted away message to a Gaim user logged into AIM or ICQ. For additional information, see : VUPEN/ADV-2005-1369