Silcnet develops the SILC (Secure Internet Live Conferencing) toolkit and client, a narrowly scoped secure messaging platform where the durable signal centers on format-string vulnerabilities in input handling. This reflects the parsing demands of the protocol implementation and the character of vulnerabilities that have affected the product line. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Silcnet over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2009-3163HIGH Multiple format string vulnerabilities in lib/silcclient/command.c in Secure Internet Live Conferencing (SILC) Toolkit before 1.1.10, and SILC Client 1.1.8 and earlier, allow remot | Sep 10, 2009 | 7.5 | 22 | NO | NO |
CVE-2009-3051HIGH Multiple format string vulnerabilities in lib/silcclient/client_entry.c in Secure Internet Live Conferencing (SILC) Toolkit before 1.1.10, and SILC Client before 1.1.8, allow remot | Sep 10, 2009 | 7.5 | 22 | NO | NO |
CVE-2008-7160MEDIUM The silc_http_server_parse function in lib/silchttp/silchttpserver.c in the internal HTTP server in silcd in Secure Internet Live Conferencing (SILC) Toolkit before 1.1.9 allows re | Sep 10, 2009 | 5.8 | 17 | NO | NO |
CVE-2008-7159MEDIUM The silc_asn1_encoder function in lib/silcasn1/silcasn1_encode.c in Secure Internet Live Conferencing (SILC) Toolkit before 1.1.8 allows remote attackers to overwrite a stack locat | Sep 10, 2009 | 5.8 | 17 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Silcnet.
Media articles that mention a CVE ID that affects a product developed by Silcnet — matched by CVE ID, not by vendor name.