CVE-2015-8688

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
15/01/2016
Last modified:
12/04/2025

Description

Gajim before 0.16.5 allows remote attackers to modify the roster and intercept messages via a crafted roster-push IQ stanza.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:gajim:gajim:*:*:*:*:*:*:*:* 0.16.4 (including)