Unrated severityNVD Advisory· Published Sep 28, 2004· Updated Apr 16, 2026
CVE-2004-0500
CVE-2004-0500
Description
Buffer overflow in the MSN protocol plugins (1) object.c and (2) slp.c for Gaim before 0.82 allows remote attackers to cause a denial of service and possibly execute arbitrary code via MSNSLP protocol messages that are not properly handled in a strncpy call.
Affected products
34cpe:2.3:a:rob_flynn:gaim:0.10:*:*:*:*:*:*:*+ 28 more
- cpe:2.3:a:rob_flynn:gaim:0.10:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.10.3:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.50:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.51:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.52:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.53:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.54:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.55:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.56:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.57:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.58:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.59:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.59.1:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.60:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.61:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.62:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.63:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.64:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.65:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.66:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.67:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.68:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.69:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.70:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.71:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.72:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.73:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.74:*:*:*:*:*:*:*
- cpe:2.3:a:rob_flynn:gaim:0.75:*:*:*:*:*:*:*
cpe:2.3:o:mandrakesoft:mandrake_linux:9.2:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:o:mandrakesoft:mandrake_linux:9.2:*:*:*:*:*:*:*
- cpe:2.3:o:mandrakesoft:mandrake_linux:9.2:*:amd64:*:*:*:*:*
- cpe:2.3:o:mandrakesoft:mandrake_linux:10.0:*:*:*:*:*:*:*
- cpe:2.3:o:mandrakesoft:mandrake_linux:10.0:*:amd64:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
11- www.gentoo.org/security/en/glsa/glsa-200408-12.xmlnvdPatchVendor Advisory
- www.securityfocus.com/bid/10865nvdPatchVendor Advisory
- gaim.sourceforge.net/security/nvd
- www.fedoranews.org/updates/FEDORA-2004-278.shtmlnvd
- www.fedoranews.org/updates/FEDORA-2004-279.shtmlnvd
- www.gentoo.org/security/en/glsa/glsa-200408-27.xmlnvd
- www.mandrakesecure.net/en/advisories/advisory.phpnvd
- www.novell.com/linux/security/advisories/2004_25_gaim.htmlnvd
- www.redhat.com/support/errata/RHSA-2004-400.htmlnvd
- exchange.xforce.ibmcloud.com/vulnerabilities/16920nvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9429nvd
News mentions
0No linked articles in our index yet.