Heap-based buffer overflow in Xchat-WDK before 1499-4 (2012-01-18) xchat 2.8.6 on Maemo architecture could allow remote attackers to cause a denial of service (xchat client crash) or execute arbitrary code via a UTF-8 line from server containing characters outside of the Basic Multilingual Plane (BMP).
2020-02-21T18:15:11.270
2024-11-21T01:35:48.180
Modified
CVSSv3.1: 9.8 (CRITICAL)
AV:N/AC:L/Au:N/C:P/I:P/A:P
10.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | gnome | gtk | 2.10.4 | Yes |
Application | gnome | gtk | 2.14.7 | Yes |
Application | gnome | gtk | 2.18.9 | Yes |
Application | gnome | gtk | 2.24.7 | Yes |
Application | xchat | xchat | < 2.8.6 | Yes |
Application | xchat-wdk | xchat-wdk | < 1499-4 | Yes |