9.8
CVSSv3

CVE-2016-1000030

Published: 05/09/2018 Updated: 14/11/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Pidgin version <2.11.0 contains a vulnerability in X.509 Certificates imports specifically due to improper check of return values from gnutls_x509_crt_init() and gnutls_x509_crt_import() that can result in code execution. This attack appear to be exploitable via custom X.509 certificate from another client. This vulnerability appears to have been fixed in 2.11.0.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

suse linux enterprise server 11

pidgin pidgin

Vendor Advisories

Pidgin version &lt;2110 contains a vulnerability in X509 Certificates imports specifically due to improper check of return values from gnutls_x509_crt_init() and gnutls_x509_crt_import() that can result in code execution This attack appear to be exploitable via custom X509 certificate from another client This vulnerability appears to have bee ...