CVE-2012-0828

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
21/02/2020
Last modified:
21/11/2024

Description

Heap-based buffer overflow in Xchat-WDK before 1499-4 (2012-01-18) xchat 2.8.6 on Maemo architecture could allow remote attackers to cause a denial of service (xchat client crash) or execute arbitrary code via a UTF-8 line from server containing characters outside of the Basic Multilingual Plane (BMP).

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:gnome:gtk:2.10.4:*:*:*:*:*:*:*
cpe:2.3:a:gnome:gtk:2.14.7:*:*:*:*:*:*:*
cpe:2.3:a:gnome:gtk:2.18.9:*:*:*:*:*:*:*
cpe:2.3:a:gnome:gtk:2.24.7:*:*:*:*:*:*:*
cpe:2.3:a:xchat:xchat:*:*:*:*:*:*:*:* 2.8.6 (excluding)
cpe:2.3:a:xchat-wdk:xchat-wdk:*:*:*:*:*:*:*:* 1499-4 (excluding)