Описание
The g_markup_escape_text function in the SILC protocol plug-in in libpurple 2.10.0 and earlier, as used in Pidgin and possibly other products, allows remote attackers to cause a denial of service (crash) via invalid UTF-8 sequences that trigger use of invalid pointers and an out-of-bounds read, related to interactions with certain versions of glib2.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | code not built |
| hardy | ignored | end of life |
| lucid | released | 1:2.6.6-1ubuntu4.4 |
| maverick | released | 1:2.7.3-1ubuntu3.3 |
| natty | released | 1:2.7.11-1ubuntu2.1 |
| oneiric | not-affected | code not built |
| upstream | needs-triage |
Показывать по
4.3 Medium
CVSS2
Связанные уязвимости
The g_markup_escape_text function in the SILC protocol plug-in in libpurple 2.10.0 and earlier, as used in Pidgin and possibly other products, allows remote attackers to cause a denial of service (crash) via invalid UTF-8 sequences that trigger use of invalid pointers and an out-of-bounds read, related to interactions with certain versions of glib2.
The g_markup_escape_text function in the SILC protocol plug-in in libpurple 2.10.0 and earlier, as used in Pidgin and possibly other products, allows remote attackers to cause a denial of service (crash) via invalid UTF-8 sequences that trigger use of invalid pointers and an out-of-bounds read, related to interactions with certain versions of glib2.
The g_markup_escape_text function in the SILC protocol plug-in in libp ...
The g_markup_escape_text function in the SILC protocol plug-in in libpurple 2.10.0 and earlier, as used in Pidgin and possibly other products, allows remote attackers to cause a denial of service (crash) via invalid UTF-8 sequences that trigger use of invalid pointers and an out-of-bounds read, related to interactions with certain versions of glib2.
4.3 Medium
CVSS2