CVE-2008-5657

CRLF injection vulnerability in Quassel Core before 0.3.0.3 allows remote attackers to spoof IRC messages as other users via a crafted CTCP message.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:quassel:quassel_core:*:*:*:*:*:*:*:*
cpe:2.3:a:quassel:quassel_core:0.1.0:*:*:*:*:*:*:*
cpe:2.3:a:quassel:quassel_core:0.2.0:alpha1:*:*:*:*:*:*
cpe:2.3:a:quassel:quassel_core:0.2.0:alpha2:*:*:*:*:*:*
cpe:2.3:a:quassel:quassel_core:0.2.0:alpha3:*:*:*:*:*:*
cpe:2.3:a:quassel:quassel_core:0.2.0:alpha4:*:*:*:*:*:*
cpe:2.3:a:quassel:quassel_core:0.2.0:alpha5:*:*:*:*:*:*
cpe:2.3:a:quassel:quassel_core:0.2.0:beta1:*:*:*:*:*:*
cpe:2.3:a:quassel:quassel_core:0.2.0:pre:*:*:*:*:*:*
cpe:2.3:a:quassel:quassel_core:0.2.0:rc1:*:*:*:*:*:*
cpe:2.3:a:quassel:quassel_core:0.3.0:*:*:*:*:*:*:*
cpe:2.3:a:quassel:quassel_core:0.3.0:pre:*:*:*:*:*:*
cpe:2.3:a:quassel:quassel_core:0.3.0.1:*:*:*:*:*:*:*

History

21 Nov 2024, 00:54

Type Values Removed Values Added
References () http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=506550 - () http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=506550 -
References () http://quassel-irc.org/node/89 - Patch, Vendor Advisory () http://quassel-irc.org/node/89 - Patch, Vendor Advisory
References () http://secunia.com/advisories/32470 - () http://secunia.com/advisories/32470 -
References () http://secunia.com/advisories/32692 - () http://secunia.com/advisories/32692 -
References () http://wouter.coekaerts.be/site/security/quassel-ctcp - () http://wouter.coekaerts.be/site/security/quassel-ctcp -
References () http://www.securityfocus.com/archive/1/497882/30/0/threaded - () http://www.securityfocus.com/archive/1/497882/30/0/threaded -
References () http://www.securityfocus.com/archive/1/497884 - () http://www.securityfocus.com/archive/1/497884 -
References () http://www.securityfocus.com/bid/31973 - () http://www.securityfocus.com/bid/31973 -
References () http://www.vupen.com/english/advisories/2008/3164 - () http://www.vupen.com/english/advisories/2008/3164 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/46195 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/46195 -
References () https://www.redhat.com/archives/fedora-package-announce/2008-November/msg00354.html - () https://www.redhat.com/archives/fedora-package-announce/2008-November/msg00354.html -

Information

Published : 2008-12-17 20:30

Updated : 2024-11-21 00:54


NVD link : CVE-2008-5657

Mitre link : CVE-2008-5657

CVE.ORG link : CVE-2008-5657


JSON object : View

Products Affected

quassel

  • quassel_core
CWE
CWE-20

Improper Input Validation