Total
3 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2008-0672 | 1 Tintin | 2 Tintin\+\+, Wintin\+\+ | 2024-02-04 | 5.0 MEDIUM | N/A |
The process_chat_input function in TinTin++ 1.97.9 and WinTin++ 1.97.9 allows remote attackers to cause a denial of service (application crash) via a YES message without a newline character, which triggers a NULL dereference. | |||||
CVE-2008-0673 | 1 Tintin | 2 Tintin\+\+, Wintin\+\+ | 2024-02-04 | 7.5 HIGH | N/A |
TinTin++ 1.97.9 and WinTin++ 1.97.9 open files on the basis of an inbound file-transfer request, before the user has an opportunity to decline the request, which allows remote attackers to truncate arbitrary files in the top level of a home directory. | |||||
CVE-2008-0671 | 1 Tintin | 2 Tintin\+\+, Wintin\+\+ | 2024-02-04 | 10.0 HIGH | N/A |
Stack-based buffer overflow in the add_line_buffer function in TinTin++ 1.97.9 and WinTin++ 1.97.9 allows remote attackers to execute arbitrary code via a long chat message, related to conversion from LF to CRLF. |