BarnOwl before 1.6.2 does not check the return code of calls to the (1) ZPending and (2) ZReceiveNotice functions in libzephyr, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2010-08-04T19:00:00Z
Updated: 2024-09-16T18:44:18.936Z
Reserved: 2010-07-14T00:00:00Z
Link: CVE-2010-2725
Vulnrichment
No data.
NVD
Status : Modified
Published: 2010-08-05T13:23:09.557
Modified: 2024-11-21T01:17:16.000
Link: CVE-2010-2725
Redhat
No data.