Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4fh6-vrqh-wvpv

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The msn_httpconn_parse_data function in httpconn.c in the MSN protocol plugin in libpurple in Pidgin before 2.10.0 does not properly handle HTTP 100 responses, which allows remote attackers to cause a denial of service (incorrect memory access and application crash) via vectors involving a crafted server message.

The msn_httpconn_parse_data function in httpconn.c in the MSN protocol plugin in libpurple in Pidgin before 2.10.0 does not properly handle HTTP 100 responses, which allows remote attackers to cause a denial of service (incorrect memory access and application crash) via vectors involving a crafted server message.

EPSS

Процентиль: 85%
0.02692
Низкий

Связанные уязвимости

ubuntu
больше 14 лет назад

The msn_httpconn_parse_data function in httpconn.c in the MSN protocol plugin in libpurple in Pidgin before 2.10.0 does not properly handle HTTP 100 responses, which allows remote attackers to cause a denial of service (incorrect memory access and application crash) via vectors involving a crafted server message.

redhat
больше 14 лет назад

The msn_httpconn_parse_data function in httpconn.c in the MSN protocol plugin in libpurple in Pidgin before 2.10.0 does not properly handle HTTP 100 responses, which allows remote attackers to cause a denial of service (incorrect memory access and application crash) via vectors involving a crafted server message.

nvd
больше 14 лет назад

The msn_httpconn_parse_data function in httpconn.c in the MSN protocol plugin in libpurple in Pidgin before 2.10.0 does not properly handle HTTP 100 responses, which allows remote attackers to cause a denial of service (incorrect memory access and application crash) via vectors involving a crafted server message.

debian
больше 14 лет назад

The msn_httpconn_parse_data function in httpconn.c in the MSN protocol ...

EPSS

Процентиль: 85%
0.02692
Низкий