CVE-2005-2370

NameCVE-2005-2370
DescriptionMultiple "memory alignment errors" in libgadu, as used in ekg before 1.6rc2, Gaim before 1.5.0, and other packages, allows remote attackers to cause a denial of service (bus error) on certain architectures such as SPARC via an incoming message.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
ReferencesDSA-1318-1, DSA-769-1, DSA-813-1, DTSA-2-1, DTSA-5-1
Debian Bugs323185

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
ekg (PTS)jessie1:1.9~pre+r2855-2fixed
stretch1:1.9~pre+r2855-5fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
centericqsourcewoody(not affected)DSA-813-1
centericqsourcesarge4.20.0-1sarge2DSA-813-1
centericqsourceetch4.20.0-8etch1mediumDTSA-2-1
centericqsource(unstable)4.20.0-9low323185
ekgsourcesarge1:1.5+20050411-7DSA-1318-1
ekgsourceetch1:1.7~rc2-1etch1DSA-1318-1
ekgsource(unstable)1:1.5+20050712+1.6rc2-1low
gaimsourcesarge1:1.2.1-1.4lowDSA-769-1
gaimsourceetch1:1.4.0-5etch2highDTSA-5-1
gaimsource(unstable)1:1.4.0-5low

Search for package or bug name: Reporting problems