CVE-2008-6393

EPSS 23.1%

psi - denial of service

Published: 3/3/2009Modified: 4/28/2026

Description

PSI Jabber client before 0.12.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a file transfer request with a negative value in a SOCKS5 option, which bypasses a signed integer check and triggers an integer overflow and a heap-based buffer overflow.

Affected packages (2)

References (1)