← Back

CVE-2005-3899

nvd nist
Published: Nov 29, 2005Modified: Apr 16, 2026

JSON object

Loading...
5.4
Vector
AV:N/AC:H/Au:N/C:N/I:N/A:C
Exploitability: 4.9 / Impact: 6.9
Source: NVD

Description

The automatic update feature in Google Talk allows remote attackers to cause a denial of service (CPU and memory consumption) by poisoning a target's DNS cache and causing a large update file to be sent, which consumes large amounts of CPU and memory during the signature verification, aka BenjiBug.

Affected (1)

Products: Google: Talk
1 product
Talk
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
All versions

Timeline

No history available yet.