LWN.net Logo

pidgin: denial of service

Package(s):pidgin CVE #(s):CVE-2010-3711
Created:October 21, 2010 Updated:March 14, 2011
Description:

From the Red Hat advisory:

Multiple NULL pointer dereference flaws were found in the way Pidgin handled Base64 decoding. A remote attacker could use these flaws to crash Pidgin if the target Pidgin user was using the Yahoo! Messenger Protocol, MSN, MySpace, or Extensible Messaging and Presence Protocol (XMPP) protocol plug-ins, or using the Microsoft NT LAN Manager (NTLM) protocol for authentication. (CVE-2010-3711)

Alerts:
Fedora FEDORA-2010-19314 2010-12-30
Slackware SSA:2010-361-01 2010-12-28
Red Hat RHSA-2010:0890-01 2010-11-16
Fedora FEDORA-2010-17130 2010-11-02
Ubuntu USN-1014-1 2010-11-04
Slackware SSA:2010-305-02 2010-11-02
Fedora FEDORA-2010-16629 2010-10-27
Mandriva MDVSA-2010:208 2010-10-21
CentOS CESA-2010:0788 2010-10-25
CentOS CESA-2010:0788 2010-10-21
Red Hat RHSA-2010:0788-01 2010-10-21

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds