Search CVE reports
1 – 7 of 7 results
CVE-2009-5050
Low prioritykonversation before 1.2.3 allows attackers to cause a denial of service.
1 affected package
konversation
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
konversation | — | — | — | — | — |
CVE-2017-15923
Low priorityKonversation 1.4.x, 1.5.x, 1.6.x, and 1.7.x before 1.7.3 allow remote attackers to cause a denial of service (crash) via vectors related to parsing of IRC color formatting codes.
1 affected package
konversation
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
konversation | — | — | — | — | Fixed |
CVE-2014-8483
Low prioritySome fixes available 7 of 8
The blowfishECB function in core/cipher.cpp in Quassel IRC 0.10.0 allows remote attackers to cause a denial of service (out-of-bounds read) via a malformed string.
2 affected packages
konversation, quassel
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
konversation | — | — | — | — | — |
quassel | — | — | — | — | — |
CVE-2007-4400
Low prioritySome fixes available 4 of 7
CRLF injection vulnerability in the included media script in Konversation allows user-assisted remote attackers to execute arbitrary IRC commands via CRLF sequences in the name of the song in a .mp3 file.
1 affected package
konversation
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
konversation | — | — | — | — | — |
CVE-2005-0131
Unknown priorityThe Quick Connection dialog in Konversation 0.15 inadvertently uses the user-provided password as the nickname instead of the user-provided nickname when connecting to the IRC server, which could leak the password to other users.
1 affected package
konversation
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
konversation | — | — | — | — | — |
CVE-2005-0130
Unknown priorityCertain Perl scripts in Konversation 0.15 allow remote attackers to execute arbitrary commands via shell metacharacters in (1) channel names or (2) song names that are not properly quoted when the user runs IRC scripts.
1 affected package
konversation
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
konversation | — | — | — | — | — |
CVE-2005-0129
Unknown priorityThe Quick Buttons feature in Konversation 0.15 allows remote attackers to execute certain IRC commands via a channel name containing "%" variables, which are recursively expanded by the Server::parseWildcards function when the...
1 affected package
konversation
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
konversation | — | — | — | — | — |