Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2008-6393

PSI Jabber client before 0.12.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a file transfer request with a negative value in a SOCKS5 option, which bypasses a signed integer check and triggers an integer overflow and a heap-based buffer overflow.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.255
EPSS Ranking 96.0%
CVSS Severity
CVSS v2 Score 10.0
References
Products affected by CVE-2008-6393
  • Jabber » Jabber Client » Version: Any
    cpe:2.3:a:jabber:jabber_client:*
  • Psi-Im » Psi » Version: Any
    cpe:2.3:a:psi-im:psi:*
  • Psi-Im » Psi » Version: 0.1.0
    cpe:2.3:a:psi-im:psi:0.1.0
  • Psi-Im » Psi » Version: 0.11
    cpe:2.3:a:psi-im:psi:0.11
  • Psi-Im » Psi » Version: 0.8.6
    cpe:2.3:a:psi-im:psi:0.8.6
  • Psi-Im » Psi » Version: 0.8.7
    cpe:2.3:a:psi-im:psi:0.8.7
  • Psi-Im » Psi » Version: 0.9
    cpe:2.3:a:psi-im:psi:0.9
  • Psi-Im » Psi » Version: 0.9.1
    cpe:2.3:a:psi-im:psi:0.9.1
  • Psi-Im » Psi » Version: 0.9.2
    cpe:2.3:a:psi-im:psi:0.9.2
  • Psi-Im » Psi » Version: 0.9.3
    cpe:2.3:a:psi-im:psi:0.9.3


Contact Us

Shodan ® - All rights reserved