VYPR

by Kphone

CVEs (2)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2004-19400.040.07Dec 31, 2004sipclient.cpp in KPhone 4.0.1 and earlier allows remote attackers to cause a denial of service (crash) via a STUN response packet with a large attrLen value that causes an out-of-bounds read.
CVE-2006-24420.000.00May 18, 2006kphone 4.2 creates .qt/kphonerc with world-readable permissions, which allows local users to read usernames and SIP passwords.