CVE Database
/

CVE-2009-3163

Back to search

CVE-2009-3163

Published: Sep 10, 2009

Modified: Aug 7, 2024

PUBLISHED

Description

Multiple format string vulnerabilities in lib/silcclient/command.c in Secure Internet Live Conferencing (SILC) Toolkit before 1.1.10, and SILC Client 1.1.8 and earlier, allow remote attackers to execute arbitrary code via format string specifiers in a channel name, related to (1) silc_client_command_topic, (2) silc_client_command_kick, (3) silc_client_command_leave, and (4) silc_client_command_users.

VendorProductVersions

n/a

n/a

affected
n/a

References

36193
vdb-entry
x_refsource_BID
36614
third-party-advisory
x_refsource_SECUNIA
MDVSA-2009:235
vendor-advisory
x_refsource_MANDRIVA
DSA-1879
vendor-advisory
x_refsource_DEBIAN
MDVSA-2009:234
vendor-advisory
x_refsource_MANDRIVA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now