← Back

CVE-2008-5402

nvd nist
Published: Dec 10, 2008Modified: Apr 23, 2026

JSON object

Loading...
10.0
Vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 10.0 / Impact: 10.0
Source: NVD

Description

Double free vulnerability in the XML parser in Trillian before 3.1.12.0 allows remote attackers to execute arbitrary code via a crafted XML expression, related to the "IMG SRC ID."

Affected (55)

Trillian
Trillian Pro
2 products
Trillian
Trillian Pro
Configuration A
55 vulnerable
Vulnerable SoftwareAffected Versions
Cerulean Studios
Version 0.50
Version 0.52
Version 0.60
Version 0.61
Version 0.62
Version 0.6351
Version 0.635
Version 0.63
Version 0.70
Version 0.71
Version 0.725
Version 0.72
Version 0.73
Version 0.74
Version 0.74c
Version 0.74d
Version 0.74e
Version 0.74f
Version 0.74g
Version 0.74i
Version 1.0
Version 1.0
Version 2.0
Version 2.0
Version 2.1
Version 3.0
Version 3.0
Version 3.0
Version 3.1.0.120
Version 3.1.0.121
Version 3.1.10.0
Version 3.1.11.0
Version 3.1.5.0
Version 3.1.5.1
Version 3.1.6.0
Version 3.1.7.0
Version 3.1.8.0
Version 3.1.9.0
Version 3.1.9.0
Version 3.1.9.0
Version 3.1
Version 3.1
Version 3.1
Cerulean Studios
All versions
Version 1.0
Version 2.01
Version 2.0
Version 3.0
Version 3.1.5.0
Version 3.1_build_121
Ceruleanstudios
All versions
Version 3.1.0.9
Version 3.1.9.0
Ceruleanstudios
All versions
Version 3.1.9.0

Related CWEs

References (20)

Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.