Products: 2
    Vulnerabilities: 6
    Known Exploited: 0
    3
    Critical Level Threats
    2
    High Level Threats
    1
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2012-1187

    Bitlbee does not drop extra group privileges correctly in unix.c

    Last Modified: Nov 21, 2024
    Published: Oct 29, 2019

    CVE-2016-10189

    BitlBee before 3.5 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) and possibly execute arbitrary code via a file transfer request for a contact that is not in the contact list.

    Last Modified: Apr 20, 2025
    Published: Mar 14, 2017

    CVE-2016-10188

    Use-after-free vulnerability in bitlbee-libpurple before 3.5 allows remote servers to cause a denial of service (crash) or possibly execute arbitrary code by causing a file transfer connection to expire.

    Last Modified: Apr 20, 2025
    Published: Mar 14, 2017

    CVE-2017-5668

    bitlbee-libpurple before 3.5.1 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) and possibly execute arbitrary code via a file transfer request for a contact that is not in the contact list. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-10189.

    Last Modified: Apr 20, 2025
    Published: Mar 14, 2017

    CVE-2008-3969

    Multiple unspecified vulnerabilities in BitlBee before 1.2.3 allow remote attackers to "overwrite" and "hijack" existing accounts via unknown vectors related to "inconsistent handling of the USTATUS_IDENTIFIED state." NOTE: this issue exists because of an incomplete fix for CVE-2008-3920.

    Last Modified: Apr 23, 2026
    Published: Sep 10, 2008
    Items Per Page
    Bitlbee Vulnerabilities & Security CVEs | CVE-DB