4.3
CVSSv2

CVE-2007-4999

Published: 29/10/2007 Updated: 15/10/2018
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

libpurple in Pidgin 2.1.0 up to and including 2.2.1, when using HTML logging, allows remote malicious users to cause a denial of service (NULL dereference and application crash) via a message that contains invalid HTML data, a different vector than CVE-2007-4996.

Vulnerable Product Search on Vulmon Subscribe to Product

pidgin pidgin 2.2.1

pidgin pidgin 2.1.0

pidgin pidgin 2.2.0

Vendor Advisories

It was discovered that Pidgin did not correctly handle certain logging events A remote attacker could send specially crafted messages and cause the application to crash, leading to a denial of service ...