CVE-2016-10188

CRITICAL9.8EPSS 1.5%

bitlbee - security update

發布日:2017/3/14修改日:2026/4/28
也稱為:DEBIAN-CVE-2016-10188

描述

Use-after-free vulnerability in bitlbee-libpurple before 3.5 allows remote servers to cause a denial of service (crash) or possibly execute arbitrary code by causing a file transfer connection to expire.

受影響套件(3)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1CRITICAL9.8CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

參考連結(1)