The automatic update feature in Google Talk allows remote attackers to cause a denial of service (CPU and memory consumption) by poisoning a target's DNS cache and causing a large update file to be sent, which consumes large amounts of CPU and memory during the signature verification, aka BenjiBug.
References
Configurations
Information
Published : 2005-11-29 13:03
Updated : 2017-07-19 18:29
NVD link : CVE-2005-3899
Mitre link : CVE-2005-3899
JSON object : View
CWE
Products Affected
- talk