5
CVSSv2

CVE-2008-2956

Published: 01/07/2008 Updated: 17/05/2024
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Memory leak in Pidgin 2.0.0, and possibly other versions, allows remote malicious users to cause a denial of service (memory consumption) via malformed XML documents. NOTE: this issue has been disputed by the upstream vendor, who states: "I was never able to identify a scenario under which a problem occurred and the original reporter wasn't able to supply any sort of reproduction details."

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

pidgin pidgin 2.0.0

Vendor Advisories

Debian Bug report logs - #488632 pidgin: Few security flaws Package: pidgin; Maintainer for pidgin is Ari Pollak <ari@debianorg>; Source for pidgin is src:pidgin (PTS, buildd, popcon) Reported by: Steffen Joeris <steffenjoeris@skolelinuxde> Date: Mon, 30 Jun 2008 08:36:02 UTC Severity: important Tags: fixed-upstr ...