CVE-2010-0420
CVE-2010-0420
libpurple in Finch in Pidgin before 2.6.6, when an XMPP multi-user chat (MUC) room is used, does not properly parse nicknames containing <br> sequences, which allows remote attackers to cause a denial of service (application crash) via a crafted nickname.
Productos afectados
n/a · n/a¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
http://developer.pidgin.im/wiki/ChangeLoghttp://lists.fedoraproject.org/pipermail/package-announce/2010-February/035332.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-February/035347.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-February/035409.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-03/msg00004.htmlhttp://pidgin.im/news/security/?id=44https://bugzilla.redhat.com/show_bug.cgi?id=565786http://secunia.com/advisories/38563http://secunia.com/advisories/38640http://secunia.com/advisories/38658http://secunia.com/advisories/38712http://secunia.com/advisories/38915