Home

Description

EKG Gadu 1.9~pre+r2855-3+b1 contains a local buffer overflow vulnerability in the username handling that allows local attackers to execute arbitrary code by supplying an oversized username string. Attackers can trigger the overflow in the strlcpy function by passing a crafted buffer exceeding 258 bytes to overwrite the instruction pointer and execute shellcode with user privileges.

PUBLISHED Reserved 2026-03-28 | Published 2026-03-28 | Updated 2026-03-30 | Assigner VulnCheck




HIGH: 8.6CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
HIGH: 8.4CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Problem types

Out-of-bounds Write

Product status

1:1.9~pre+r2855-3+b1
affected

Credits

Juan Sacco - http://www.exploitpack.com - finder

References

www.exploit-db.com/exploits/40392 (ExploitDB-40392) exploit

ekg.chmurka.net/ (Official Product Homepage) product

www.vulncheck.com/...-buffer-overflow-via-username-parameter (VulnCheck Advisory: EKG Gadu 1.9 Local Buffer Overflow via Username Parameter) third-party-advisory

cve.org (CVE-2016-20047)

nvd.nist.gov (CVE-2016-20047)

Download JSON