CVE Database
/

CVE-2005-3887

Back to search

CVE-2005-3887

Published: Nov 29, 2005

Modified: Aug 7, 2024

PUBLISHED

Description

Gadu-Gadu 7.20 does not properly handle MS-DOS device names in filenames, which allows remote attackers to (1) cause a denial of service (hang) via an image filename of AUX: sent twice (hang), or (2) write to the LPT1 port via a filename of "LPT1:".

VendorProductVersions

n/a

n/a

affected
n/a

References

15520
vdb-entry
x_refsource_BID
21015
vdb-entry
x_refsource_OSVDB
17597
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now