CVE Database
/

CVE-2009-3051

Back to search

CVE-2009-3051

Published: Sep 10, 2009

Modified: Aug 7, 2024

PUBLISHED

Description

Multiple format string vulnerabilities in lib/silcclient/client_entry.c in Secure Internet Live Conferencing (SILC) Toolkit before 1.1.10, and SILC Client before 1.1.8, allow remote attackers to execute arbitrary code via format string specifiers in a nickname field, related to the (1) silc_client_add_client, (2) silc_client_update_client, and (3) silc_client_nickname_format functions.

VendorProductVersions

n/a

n/a

affected
n/a

References

ADV-2009-2150
vdb-entry
x_refsource_VUPEN
36134
third-party-advisory
x_refsource_SECUNIA
36614
third-party-advisory
x_refsource_SECUNIA
MDVSA-2009:235
vendor-advisory
x_refsource_MANDRIVA
DSA-1879
vendor-advisory
x_refsource_DEBIAN
SUSE-SR:2009:016
vendor-advisory
x_refsource_SUSE
35940
vdb-entry
x_refsource_BID
MDVSA-2009:234
vendor-advisory
x_refsource_MANDRIVA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now