Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2009-3084

Опубликовано: 08 сент. 2009
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 5

Описание

The msn_slp_process_msg function in libpurple/protocols/msn/slpcall.c in the MSN protocol plugin in libpurple 2.6.0 and 2.6.1, as used in Pidgin before 2.6.2, allows remote attackers to cause a denial of service (application crash) via a handwritten (aka Ink) message, related to an uninitialized variable and the incorrect "UTF16-LE" charset name.

РелизСтатусПримечание
dapper

DNE

devel

not-affected

1:2.6.2-1ubuntu2
hardy

not-affected

code not present
intrepid

not-affected

code not present
jaunty

not-affected

code not present
karmic

not-affected

1:2.6.2-1ubuntu2
upstream

released

2.6.2

Показывать по

EPSS

Процентиль: 80%
0.01382
Низкий

5 Medium

CVSS2

Связанные уязвимости

nvd
больше 16 лет назад

The msn_slp_process_msg function in libpurple/protocols/msn/slpcall.c in the MSN protocol plugin in libpurple 2.6.0 and 2.6.1, as used in Pidgin before 2.6.2, allows remote attackers to cause a denial of service (application crash) via a handwritten (aka Ink) message, related to an uninitialized variable and the incorrect "UTF16-LE" charset name.

debian
больше 16 лет назад

The msn_slp_process_msg function in libpurple/protocols/msn/slpcall.c ...

github
больше 3 лет назад

The msn_slp_process_msg function in libpurple/protocols/msn/slpcall.c in the MSN protocol plugin in libpurple 2.6.0 and 2.6.1, as used in Pidgin before 2.6.2, allows remote attackers to cause a denial of service (application crash) via a handwritten (aka Ink) message, related to an uninitialized variable and the incorrect "UTF16-LE" charset name.

EPSS

Процентиль: 80%
0.01382
Низкий

5 Medium

CVSS2