cve-2005-2370-00

Summary Gadu-Gadu memory alignment bug
Date 2005-08-11
CVE Number CVE-2005-2370
Discovered By Marcin Owsiany and Wojtek Kaniewski
Fixed In Release 1.5.0

Description

There was a memory alignment bug in the library Gaim uses to access the Gadu-Gadu network. This bug can not be exploited on x86 architectures. This bug was recently fixed in the libgadu library, but also needed to be fixed in Gaim because Gaim includes a copy of the libgadu library.

Mitigation

The vulnerable section of code was modified to work correctly on all architectures.

Looking to reach us via XMPP? Check out the new PidginChat service!