|
|
Log in / Subscribe / Register

pidgin: denial of service

Package(s):pidgin CVE #(s):CVE-2011-1091
Created:March 14, 2011 Updated:November 10, 2011
Description: From the Red Hat bugzilla:

Multiple NULL pointer dereference flaws were found in the way Yahoo protocol plug-in of the Pidgin instant messaging client handled malformed YMSG packets (SMS messages and notification packets). A remote, authenticated user could use this flaw to cause denial of service (Pidgin crash) via specially-crafted notification message. The SMS messages handling issue is exploitable only via specially-crafted SMS message, sent from remote, malicious Yahoo server.

Alerts:
openSUSE openSUSE-SU-2012:0066-1 pidgin 2012-01-09
Ubuntu USN-1273-1 pidgin 2011-11-21
CentOS CESA-2011:1371 pidgin 2011-11-09
CentOS CESA-2011:1371 pidgin 2011-10-14
Scientific Linux SL-pidg-20111013 pidgin 2011-10-13
Red Hat RHSA-2011:1371-01 pidgin 2011-10-13
Pardus 2011-59 pidgin 2011-03-22
Mandriva MDVSA-2011:050 pidgin 2011-03-21
Fedora FEDORA-2011-3132 pidgin 2011-03-11
Fedora FEDORA-2011-3113 pidgin 2011-03-11
Red Hat RHSA-2011:0616-01 pidgin 2011-05-19

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds