Show filters
89 Total Results
Displaying 41-50 of 89
Sort by:
Attacker Value
Unknown

CVE-2013-0273

Disclosure Date: February 16, 2013 (last updated October 05, 2023)
sametime.c in the Sametime protocol plugin in libpurple in Pidgin before 2.10.7 does not properly terminate long user IDs, which allows remote servers to cause a denial of service (application crash) via a crafted packet.
0
Attacker Value
Unknown

CVE-2013-0274

Disclosure Date: February 16, 2013 (last updated October 05, 2023)
upnp.c in libpurple in Pidgin before 2.10.7 does not properly terminate long strings in UPnP responses, which allows remote attackers to cause a denial of service (application crash) by leveraging access to the local network.
0
Attacker Value
Unknown

CVE-2013-0272

Disclosure Date: February 16, 2013 (last updated October 05, 2023)
Buffer overflow in http.c in the MXit protocol plugin in libpurple in Pidgin before 2.10.7 allows remote servers to execute arbitrary code via a long HTTP header.
0
Attacker Value
Unknown

CVE-2013-0271

Disclosure Date: February 16, 2013 (last updated October 05, 2023)
The MXit protocol plugin in libpurple in Pidgin before 2.10.7 might allow remote attackers to create or overwrite files via a crafted (1) mxit or (2) mxit/imagestrips pathname.
0
Attacker Value
Unknown

CVE-2011-4922

Disclosure Date: August 08, 2012 (last updated October 04, 2023)
cipher.c in the Cipher API in libpurple in Pidgin before 2.7.10 retains encryption-key data in process memory, which might allow local users to obtain sensitive information by reading a core file or other representation of memory contents.
0
Attacker Value
Unknown

CVE-2012-3374

Disclosure Date: July 07, 2012 (last updated October 04, 2023)
Buffer overflow in markup.c in the MXit protocol plugin in libpurple in Pidgin before 2.10.5 allows remote attackers to execute arbitrary code via a crafted inline image in a message.
0
Attacker Value
Unknown

CVE-2012-2318

Disclosure Date: July 03, 2012 (last updated October 04, 2023)
msg.c in the MSN protocol plugin in libpurple in Pidgin before 2.10.4 does not properly handle crafted characters, which allows remote servers to cause a denial of service (application crash) by placing these characters in a text/plain message.
0
Attacker Value
Unknown

CVE-2012-2214

Disclosure Date: July 03, 2012 (last updated October 04, 2023)
proxy.c in libpurple in Pidgin before 2.10.4 does not properly handle canceled SOCKS5 connection attempts, which allows user-assisted remote authenticated users to cause a denial of service (application crash) via a sequence of XMPP file-transfer requests.
0
Attacker Value
Unknown

CVE-2012-2369

Disclosure Date: May 23, 2012 (last updated October 04, 2023)
Format string vulnerability in the log_message_cb function in otr-plugin.c in the Off-the-Record Messaging (OTR) pidgin-otr plugin before 3.2.1 for Pidgin might allow remote attackers to execute arbitrary code via format string specifiers in data that generates a log message.
0
Attacker Value
Unknown

CVE-2011-4939

Disclosure Date: March 15, 2012 (last updated October 04, 2023)
The pidgin_conv_chat_rename_user function in gtkconv.c in Pidgin before 2.10.2 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) by changing a nickname while in an XMPP chat room.
0