Quassel before 0.12-rc1 uses an incorrect data-type size when splitting a message, which allows remote attackers to cause a denial of service (crash) via a long CTCP query containing only multibyte characters.
References
Configurations
Information
Published : 2015-04-10 08:00
Updated : 2016-12-02 19:06
NVD link : CVE-2015-2778
Mitre link : CVE-2015-2778
JSON object : View
CWE
CWE-399
Resource Management Errors
Products Affected
quassel-irc
- quassel