CVE-2007-4400
CVE-2007-4400
CRLF injection vulnerability in the included media script in Konversation allows user-assisted remote attackers to execute arbitrary IRC commands via CRLF sequences in the name of the song in a .mp3 file.
Productos afectados
n/a · n/a¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
http://lists.grok.org.uk/pipermail/full-disclosure/2007-August/065227.htmlhttp://osvdb.org/39569http://secunia.com/advisories/26456http://secunia.com/advisories/29752http://securityreason.com/securityalert/3036https://exchange.xforce.ibmcloud.com/vulnerabilities/35985https://www.redhat.com/archives/fedora-package-announce/2008-April/msg00134.htmlhttps://www.redhat.com/archives/fedora-package-announce/2008-April/msg00209.htmlhttp://wouter.coekaerts.be/site/security/nowplayinghttp://www.securityfocus.com/archive/1/476283/100/0/threadedhttp://www.securityfocus.com/bid/25281