Описание
libymsg.c in the Yahoo! protocol plugin in libpurple in Pidgin 2.6.0 through 2.7.10 allows (1) remote authenticated users to cause a denial of service (NULL pointer dereference and application crash) via a malformed YMSG notification packet, and allows (2) remote Yahoo! servers to cause a denial of service (NULL pointer dereference and application crash) via a malformed YMSG SMS message.
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | DNE | |
| devel | released | 1:2.7.11-1ubuntu1 |
| hardy | ignored | end of life |
| karmic | ignored | end of life |
| lucid | released | 1:2.6.6-1ubuntu4.4 |
| maverick | released | 1:2.7.3-1ubuntu3.3 |
| natty | released | 1:2.7.11-1ubuntu1 |
| oneiric | released | 1:2.7.11-1ubuntu1 |
| upstream | released | 2.7.11 |
Показывать по
EPSS
4 Medium
CVSS2
Связанные уязвимости
libymsg.c in the Yahoo! protocol plugin in libpurple in Pidgin 2.6.0 through 2.7.10 allows (1) remote authenticated users to cause a denial of service (NULL pointer dereference and application crash) via a malformed YMSG notification packet, and allows (2) remote Yahoo! servers to cause a denial of service (NULL pointer dereference and application crash) via a malformed YMSG SMS message.
libymsg.c in the Yahoo! protocol plugin in libpurple in Pidgin 2.6.0 through 2.7.10 allows (1) remote authenticated users to cause a denial of service (NULL pointer dereference and application crash) via a malformed YMSG notification packet, and allows (2) remote Yahoo! servers to cause a denial of service (NULL pointer dereference and application crash) via a malformed YMSG SMS message.
libymsg.c in the Yahoo! protocol plugin in libpurple in Pidgin 2.6.0 t ...
libymsg.c in the Yahoo! protocol plugin in libpurple in Pidgin 2.6.0 through 2.7.10 allows (1) remote authenticated users to cause a denial of service (NULL pointer dereference and application crash) via a malformed YMSG notification packet, and allows (2) remote Yahoo! servers to cause a denial of service (NULL pointer dereference and application crash) via a malformed YMSG SMS message.
ELSA-2011-0616: pidgin security and bug fix update (LOW)
EPSS
4 Medium
CVSS2