VDB
CVE-2008-0671
CVE-2008-0671
PUBLISHED
CVSS 10 CRITICAL
Stack-based buffer overflow in the add_line_buffer function in TinTin++ 1.97.9 and WinTin++ 1.97.9 allows remote attackers to execute arbitrary code via a long chat message, related to conversion from LF to CRLF.
EPSS 13.46% · 94.3th percentile
Risk Scores
CVSS 2.0
10
EPSS Score
13.46%
94.3th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| tintin | wintin\+\+ | 1.97.9 |
| tintin | tintin\+\+ | 1.97.9 |
| n/a | n/a | * |
Timeline
- Feb 12, 2008 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 1, 2022 CVE Updated
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- Jul 17, 2023 EPSS Score
- Sep 8, 2023 EPSS Score
References
- GLSA-201111-07 vendor-advisory
- 3632 third-party-advisory
- 28833 third-party-advisory
- 27660 vdb
- 20080206 Chat vulnerabilities in TinTin++ 1.97.9 mailing-list
- http://aluigi.altervista.org/adv/rintintin-adv.txt url
- ADV-2008-0449 vdb
- https://nvd.nist.gov/vuln/detail/CVE-2008-0671 advisory