{"id":"UBUNTU-CVE-2012-5621","details":"lib/engine/components/opal/opal-call.cpp in ekiga before 4.0.0 allows remote attackers to cause a denial of service (crash) via an OPAL connection with a party name that contains invalid UTF-8 strings.","modified":"2025-07-16T08:10:37.653814Z","published":"2014-09-29T22:55:00Z","withdrawn":"2025-07-18T16:42:47Z","upstream":["CVE-2012-5621"],"references":[{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2012-5621"},{"type":"REPORT","url":"https://www.cve.org/CVERecord?id=CVE-2012-5621"}],"affected":[{"package":{"name":"ekiga","ecosystem":"Ubuntu:14.04:LTS","purl":"pkg:deb/ubuntu/ekiga@4.0.1-4?arch=source&distro=trusty"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.0.1-4"}]}],"versions":["4.0.1-2","4.0.1-2ubuntu1","4.0.1-2ubuntu2","4.0.1-3ubuntu1"],"ecosystem_specific":{"availability":"No subscription required","binaries":[{"binary_name":"ekiga","binary_version":"4.0.1-4"},{"binary_name":"ekiga-dbg","binary_version":"4.0.1-4"},{"binary_name":"ekiga-plugin-evolution","binary_version":"4.0.1-4"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2012/UBUNTU-CVE-2012-5621.json"}},{"package":{"name":"ekiga","ecosystem":"Ubuntu:16.04:LTS","purl":"pkg:deb/ubuntu/ekiga@4.0.1-6?arch=source&distro=xenial"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.0.1-6"}]}],"versions":["4.0.1-5ubuntu1"],"ecosystem_specific":{"availability":"No subscription required","binaries":[{"binary_name":"ekiga","binary_version":"4.0.1-6"},{"binary_name":"ekiga-dbg","binary_version":"4.0.1-6"},{"binary_name":"ekiga-dbgsym","binary_version":"4.0.1-6"},{"binary_name":"ekiga-plugin-evolution","binary_version":"4.0.1-6"},{"binary_name":"ekiga-plugin-evolution-dbgsym","binary_version":"4.0.1-6"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2012/UBUNTU-CVE-2012-5621.json"}}],"schema_version":"1.7.3","severity":[{"type":"Ubuntu","score":"low"}]}