← back
CVE-2016-2370

CVE-2016-2370

3Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 2.1%
exploitation probability
2.1%top 19% of all CVEs
observed exploitation
nono source reports it
A denial of service vulnerability exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT data sent from the server could potentially result in an out-of-bounds read. A malicious server or man-in-the-middle attacker can send invalid data to trigger this vulnerability.
Affected products
Pidgin · Pidgin