Back

CRITICAL

xchat: Heap-based buffer overflow by processing UTF-8 line from server containing characters outside BMP

Published Feb 21, 2020

Description

Heap-based buffer overflow in Xchat-WDK before 1499-4 (2012-01-18) xchat 2.8.6 on Maemo architecture could allow remote attackers to cause a denial of service (xchat client crash) or execute arbitrary code via a UTF-8 line from server containing characters outside of the Basic Multilingual Plane (BMP).

Affected products

Remediation

Red Hat statement

Not vulnerable. This issue did not affect the versions of xchat as shipped with Red Hat Enterprise Linux 4, 5, and 6.

Metrics

References (8)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Feb 21, 2020
Updated Aug 6, 2024
Reserved Jan 19, 2012
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Moderate
Public date Jan 17, 2012