5
CVSSv2

CVE-2011-4601

Published: 25/12/2011 Updated: 19/09/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

family_feedbag.c in the oscar protocol plugin in libpurple in Pidgin prior to 2.10.1 does not perform the expected UTF-8 validation on message data, which allows remote malicious users to cause a denial of service (application crash) via a crafted (1) AIM or (2) ICQ message associated with buddy-list addition.

Vulnerable Product Search on Vulmon Subscribe to Product

pidgin pidgin 2.8.0

pidgin pidgin 2.7.11

pidgin pidgin 2.7.4

pidgin pidgin 2.7.3

pidgin pidgin 2.6.2

pidgin pidgin 2.6.1

pidgin pidgin 2.5.3

pidgin pidgin 2.5.2

pidgin pidgin 2.3.1

pidgin pidgin 2.3.0

pidgin pidgin 2.0.1

pidgin pidgin 2.0.0

pidgin pidgin 2.7.10

pidgin pidgin 2.7.9

pidgin pidgin 2.7.2

pidgin pidgin 2.7.1

pidgin pidgin 2.6.0

pidgin pidgin 2.7.8

pidgin pidgin 2.7.7

pidgin pidgin 2.6.6

pidgin pidgin 2.6.5

pidgin pidgin 2.5.7

pidgin pidgin 2.5.6

pidgin pidgin 2.4.3

pidgin pidgin 2.4.2

pidgin pidgin 2.2.0

pidgin pidgin 2.1.1

pidgin pidgin 2.5.9

pidgin pidgin 2.5.8

pidgin pidgin 2.5.1

pidgin pidgin 2.5.0

pidgin pidgin 2.2.2

pidgin pidgin 2.2.1

pidgin pidgin

pidgin pidgin 2.9.0

pidgin pidgin 2.7.6

pidgin pidgin 2.7.5

pidgin pidgin 2.6.4

pidgin pidgin 2.6.3

pidgin pidgin 2.5.5

pidgin pidgin 2.5.4

pidgin pidgin 2.4.1

pidgin pidgin 2.4.0

pidgin pidgin 2.1.0

pidgin pidgin 2.0.2

Vendor Advisories

Several security issues were fixed in Pidgin ...
Synopsis Moderate: pidgin security update Type/Severity Security Advisory: Moderate Topic Updated pidgin packages that fix multiple security issues are now availablefor Red Hat Enterprise Linux 6The Red Hat Security Response Team has rated this update as having moderatesecurity impact Common Vulnerability ...
Synopsis Moderate: pidgin security update Type/Severity Security Advisory: Moderate Topic Updated pidgin packages that fix multiple security issues are now availablefor Red Hat Enterprise Linux 4 and 5The Red Hat Security Response Team has rated this update as having moderatesecurity impact Common Vulnera ...