LWN.net Logo

pidgin: denial of service

Package(s):pidgin CVE #(s):CVE-2009-3615
Created:October 19, 2009 Updated:April 29, 2010
Description:

From the VUPEN advisory:

A vulnerability has been identified in Pidgin, which could be exploited by attackers to attackers to cause a denial of service. This issue is caused by an error in the Oscar protocol plugin when processing malformed ICQ or AIM contacts sent by the SIM IM client, which could cause an invalid memory access leading to a crash.

Alerts:
Mandriva MDVSA-2010:085 2010-04-28
Ubuntu USN-886-1 2010-01-18
SuSE SUSE-SR:2009:020 2010-01-12
Mandriva MDVSA-2010:001 2010-01-11
CentOS CESA-2009:1535 2009-10-29
Slackware SSA:2009-290-02 2009-10-19
CentOS CESA-2009:1536 2009-10-30
Red Hat RHSA-2009:1535-01 2009-10-29
Red Hat RHSA-2009:1536-01 2009-10-29
CentOS CESA-2009:1536 2009-10-30
Debian DSA-1932-1 2009-11-08
Fedora FEDORA-2009-10662 2009-10-21
Fedora FEDORA-2009-10702 2009-10-21

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds