Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2013-0271

Опубликовано: 13 фев. 2013
Источник: redhat
CVSS2: 3.3
EPSS Низкий

Описание

The MXit protocol plugin in libpurple in Pidgin before 2.10.7 might allow remote attackers to create or overwrite files via a crafted (1) mxit or (2) mxit/imagestrips pathname.

Отчет

Not vulnerable. This issue did not affect the versions of pidgin, as shipped with Red Hat Enterprise Linux 5 and 6.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5pidginNot affected
Red Hat Enterprise Linux 6pidginNot affected

Показывать по

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=910039pidgin: MXit protocol insufficient sanitization of saved image file names

EPSS

Процентиль: 68%
0.00556
Низкий

3.3 Low

CVSS2

Связанные уязвимости

ubuntu
почти 13 лет назад

The MXit protocol plugin in libpurple in Pidgin before 2.10.7 might allow remote attackers to create or overwrite files via a crafted (1) mxit or (2) mxit/imagestrips pathname.

nvd
почти 13 лет назад

The MXit protocol plugin in libpurple in Pidgin before 2.10.7 might allow remote attackers to create or overwrite files via a crafted (1) mxit or (2) mxit/imagestrips pathname.

debian
почти 13 лет назад

The MXit protocol plugin in libpurple in Pidgin before 2.10.7 might al ...

github
почти 4 года назад

The MXit protocol plugin in libpurple in Pidgin before 2.10.7 might allow remote attackers to create or overwrite files via a crafted (1) mxit or (2) mxit/imagestrips pathname.

EPSS

Процентиль: 68%
0.00556
Низкий

3.3 Low

CVSS2