client/NmdcHub.cpp in Linux DC++ (linuxdcpp) before 0.707 allows remote attackers to cause a denial of service (crash) via an empty private message, which triggers an out-of-bounds read.
| Software | From | Fixed in |
|---|---|---|
| linux / direct_connect | 0.702 | 0.702.x |
| linux / direct_connect | 0.704 | 0.704.x |
| linux / direct_connect | 0.703 | 0.703.x |
| linux / direct_connect | 0.701 | 0.701.x |
| linux / direct_connect | 0.699 | 0.699.x |
| linux / direct_connect | 0.686 | 0.686.x |
| linux / direct_connect | 0.705 | 0.705.x |
| linux / direct_connect | 0.700 | 0.700.x |
| linux / direct_connect | 0.706 | 0.706.x |