suse · CVE-2016-4414

Quick triage

Priority: low Published: 2021-05-30 13:41:55 UTC Updated: 2023-12-08 01:53:31 UTC

View at Official suse advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2016-4414 severity low: SUSE including 5 source package names (quassel-base-0.12.4-3.3, quassel-client-0.12.4-3.3, quassel-client-qt5-0.12.4-3.3, quassel-core-0.12.4-3.3, quassel-mono-0.12.4-3.3), 5 product×package rows across 1 product lines (openSUSE Tumbleweed): Fixed 5.

Description:

The onReadyRead function in core/coreauthhandler.cpp in Quassel before 0.12.4 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via invalid handshake data.

cvelogic Threat Intelligence