Back
CVE-2005-0687
Format string vulnerability in Hashcash 1.16 allows remote attackers to cause a denial of service (memory consumption) and possibly execute arbitrary code via format string specifiers in a reply address, which is not properly handled when printing the header.
Published: Mar 6, 2005
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (3)
| Vendor | Product | Version |
|---|---|---|
| hashcash | hashcash | 1.14 |
| hashcash | hashcash | 1.15 |
| hashcash | hashcash | 1.16 |
GitHub Security Advisory GHSA-5w7r-v534-x375
Format string vulnerability in Hashcash 1.16 allows remote attackers to cause a denial of service...
References (6)
- http://bugs.gentoo.org/show_bug.cgi?id=83541 Patch, Vendor Advisory
- http://secunia.com/advisories/14487 Patch, Vendor Advisory
- http://www.gentoo.org/security/en/glsa/glsa-200503-12.xml Patch, Vendor Advisory
- http://bugs.gentoo.org/show_bug.cgi?id=83541 Patch, Vendor Advisory
- http://secunia.com/advisories/14487 Patch, Vendor Advisory
- http://www.gentoo.org/security/en/glsa/glsa-200503-12.xml Patch, Vendor Advisory
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
2.88%
Top 14% most likely to be exploited
Threat Score
30.9 / 100
Data Sources
NVD
EPSS
GitHub