CVE-2005-2344

The BlackBerry Attachment Service in Research in Motion (RIM) BlackBerry Enterprise Server (BES) 4.0 to version 4.0 Service Pack 2 allows attackers to cause a denial of service via a malformed Portable Network Graphics (PNG) file that triggers a heap-based buffer overflow.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:rim:blackberry_enterprise_server:4.0:*:*:*:*:*:*:*
cpe:2.3:a:rim:blackberry_enterprise_server:4.0_sp1:*:*:*:*:*:*:*
cpe:2.3:a:rim:blackberry_enterprise_server:4.0_sp2:*:*:*:*:*:*:*

History

20 Nov 2024, 23:59

Type Values Removed Values Added
References () http://secunia.com/advisories/18393 - Patch, Vendor Advisory () http://secunia.com/advisories/18393 - Patch, Vendor Advisory
References () http://www.blackberry.com/knowledgecenterpublic/livelink.exe/fetch/2000/8021/728075/728850/728215/?nodeid=1167794 - Vendor Advisory () http://www.blackberry.com/knowledgecenterpublic/livelink.exe/fetch/2000/8021/728075/728850/728215/?nodeid=1167794 - Vendor Advisory
References () http://www.kb.cert.org/vuls/id/646976 - Third Party Advisory, US Government Resource () http://www.kb.cert.org/vuls/id/646976 - Third Party Advisory, US Government Resource
References () http://www.securityfocus.com/bid/16204 - () http://www.securityfocus.com/bid/16204 -
References () http://www.vupen.com/english/advisories/2006/0127 - Vendor Advisory () http://www.vupen.com/english/advisories/2006/0127 - Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/24063 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/24063 -

Information

Published : 2005-12-31 05:00

Updated : 2024-11-20 23:59


NVD link : CVE-2005-2344

Mitre link : CVE-2005-2344

CVE.ORG link : CVE-2005-2344


JSON object : View

Products Affected

rim

  • blackberry_enterprise_server
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer