7.5

CVE-2005-4817

Format string vulnerability in ui.c in Textbased MSN Client (TMSNC) before 0.2.5 allows attackers to cause a denial of service and possibly execute arbitrary code via unknown attack vectors that cause format strings to be injected into the wprintw function.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
TmsncTmsnc Version0.1.0
TmsncTmsnc Version0.1.0a
TmsncTmsnc Version0.1.0b
TmsncTmsnc Version0.1.1
TmsncTmsnc Version0.1.2
TmsncTmsnc Version0.1.3
TmsncTmsnc Version0.1.4
TmsncTmsnc Version0.1.5
TmsncTmsnc Version0.2.0
TmsncTmsnc Version0.2.0b
TmsncTmsnc Version0.2.1
TmsncTmsnc Version0.2.2
TmsncTmsnc Version0.2.3
TmsncTmsnc Version0.2.4
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 2.42% 0.82
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://secunia.com/advisories/16752
Patch
Vendor Advisory
http://sourceforge.net/project/shownotes.php?release_id=355808
Patch
http://www.osvdb.org/displayvuln.php?osvdb_id=19311
http://www.securityfocus.com/bid/14810
Patch
http://www.vupen.com/english/advisories/2005/1709
https://exchange.xforce.ibmcloud.com/vulnerabilities/22242