Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

Search CVE reports


Toggle filters

1 – 6 of 6 results


CVE-2012-1187

Low priority
Ignored

Bitlbee does not drop extra group privileges correctly in unix.c

1 affected packages

bitlbee

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
bitlbee
Show less packages

CVE-2017-5668

Medium priority
Vulnerable

bitlbee-libpurple before 3.5.1 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) and possibly execute arbitrary code via a file transfer request for a contact that is not in the...

1 affected packages

bitlbee

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
bitlbee Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2016-10189

Medium priority
Vulnerable

BitlBee before 3.5 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) and possibly execute arbitrary code via a file transfer request for a contact that is not in the contact list.

1 affected packages

bitlbee

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
bitlbee Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2016-10188

Medium priority
Vulnerable

Use-after-free vulnerability in bitlbee-libpurple before 3.5 allows remote servers to cause a denial of service (crash) or possibly execute arbitrary code by causing a file transfer connection to expire.

1 affected packages

bitlbee

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
bitlbee Not affected Not affected Not affected Not affected Vulnerable
Show less packages

CVE-2008-3969

Low priority
Ignored

Multiple unspecified vulnerabilities in BitlBee before 1.2.3 allow remote attackers to "overwrite" and "hijack" existing accounts via unknown vectors related to "inconsistent handling of the USTATUS_IDENTIFIED state." NOTE: this...

1 affected packages

bitlbee

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
bitlbee
Show less packages

CVE-2008-3920

Low priority
Ignored

Unspecified vulnerability in BitlBee before 1.2.2 allows remote attackers to "recreate" and "hijack" existing accounts via unspecified vectors.

1 affected packages

bitlbee

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
bitlbee
Show less packages