Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g255-9j94-9w77

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

cipher.c in the Cipher API in libpurple in Pidgin before 2.7.10 retains encryption-key data in process memory, which might allow local users to obtain sensitive information by reading a core file or other representation of memory contents.

cipher.c in the Cipher API in libpurple in Pidgin before 2.7.10 retains encryption-key data in process memory, which might allow local users to obtain sensitive information by reading a core file or other representation of memory contents.

EPSS

Процентиль: 24%
0.00079
Низкий

Дефекты

CWE-200

Связанные уязвимости

ubuntu
почти 13 лет назад

cipher.c in the Cipher API in libpurple in Pidgin before 2.7.10 retains encryption-key data in process memory, which might allow local users to obtain sensitive information by reading a core file or other representation of memory contents.

redhat
больше 14 лет назад

cipher.c in the Cipher API in libpurple in Pidgin before 2.7.10 retains encryption-key data in process memory, which might allow local users to obtain sensitive information by reading a core file or other representation of memory contents.

nvd
почти 13 лет назад

cipher.c in the Cipher API in libpurple in Pidgin before 2.7.10 retains encryption-key data in process memory, which might allow local users to obtain sensitive information by reading a core file or other representation of memory contents.

debian
почти 13 лет назад

cipher.c in the Cipher API in libpurple in Pidgin before 2.7.10 retain ...

oracle-oval
около 14 лет назад

ELSA-2011-0616: pidgin security and bug fix update (LOW)

EPSS

Процентиль: 24%
0.00079
Низкий

Дефекты

CWE-200