CVE-2014-3696

nmevent.c in the Novell GroupWise protocol plugin in libpurple in Pidgin before 2.10.10 allows remote servers to cause a denial of service (application crash) via a crafted server message that triggers a large memory allocation.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:N/I:N/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 84%
Affected Products (NVD)
VendorProductVersion
pidginpidgin
𝑥
≤ 2.10.9
pidginpidgin
2.10.0
pidginpidgin
2.10.1
pidginpidgin
2.10.2
pidginpidgin
2.10.3
pidginpidgin
2.10.4
pidginpidgin
2.10.5
pidginpidgin
2.10.6
pidginpidgin
2.10.7
pidginpidgin
2.10.8
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
pidgin
bookworm
2.14.12-1
fixed
bullseye
2.14.1-1
fixed
sid
2.14.13-2
fixed
trixie
2.14.13-2
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
pidgin
lucid
ignored
precise
Fixed 1:2.10.3-0ubuntu1.6
released
trusty
Fixed 1:2.10.9-0ubuntu3.2
released
utopic
Fixed 1:2.10.9-0ubuntu7.1
released
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
finch
suse enterprise desktop 12
2.10.9-8.1
fixed
suse enterprise desktop 12 SP1
2.10.9-8.1
fixed
suse enterprise desktop 12 SP2
2.11.0-12.5
fixed
suse enterprise desktop 12 SP3
2.12.0-1.33
fixed
suse enterprise desktop 12 SP4
2.12.0-3.3.1
fixed
suse enterprise sap 12
2.10.9-8.1
fixed
suse enterprise sap 12 SP1
2.10.9-8.1
fixed
suse enterprise sap 12 SP2
2.11.0-12.5
fixed
suse enterprise sap 12 SP3
2.12.0-1.33
fixed
suse enterprise sap 12 SP4
2.12.0-3.3.1
fixed
suse enterprise sap 12 SP5
2.12.0-3.3.1
fixed
suse enterprise server 12
2.10.9-8.1
fixed
suse enterprise server 12 SP1
2.10.9-8.1
fixed
suse enterprise server 12 SP2
2.11.0-12.5
fixed
suse enterprise server 12 SP3
2.12.0-1.33
fixed
suse enterprise server 12 SP4
2.12.0-3.3.1
fixed
suse enterprise server 12 SP5
2.12.0-3.3.1
fixed
suse enterprise workstation 12
2.10.9-8.1
fixed
suse enterprise workstation 12 SP1
2.10.9-8.1
fixed
suse enterprise workstation 12 SP2
2.11.0-12.5
fixed
suse enterprise workstation 12 SP3
2.12.0-1.33
fixed
suse enterprise workstation 12 SP4
2.12.0-3.3.1
fixed
suse enterprise workstation 12 SP5
2.12.0-3.3.1
fixed
libpurple
suse enterprise desktop 12
2.10.9-8.1
fixed
suse enterprise desktop 12 SP1
2.10.9-8.1
fixed
suse enterprise desktop 12 SP2
2.11.0-12.5
fixed
suse enterprise desktop 12 SP3
2.12.0-1.33
fixed
suse enterprise desktop 12 SP4
2.12.0-3.3.1
fixed
suse enterprise desktop 15
2.13.0-3.35
fixed
suse enterprise desktop 15 SP1
2.13.0-3.35
fixed
suse enterprise desktop 15 SP2
2.13.0-10.105
fixed
suse enterprise desktop 15 SP3
2.13.0-10.105
fixed
suse enterprise desktop 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise sap 12
2.10.9-8.1
fixed
suse enterprise sap 12 SP1
2.10.9-8.1
fixed
suse enterprise sap 12 SP2
2.11.0-12.5
fixed
suse enterprise sap 12 SP3
2.12.0-1.33
fixed
suse enterprise sap 12 SP4
2.12.0-3.3.1
fixed
suse enterprise sap 12 SP5
2.12.0-3.3.1
fixed
suse enterprise sap 15
2.13.0-3.35
fixed
suse enterprise sap 15 SP1
2.13.0-3.35
fixed
suse enterprise sap 15 SP2
2.13.0-10.105
fixed
suse enterprise sap 15 SP3
2.13.0-10.105
fixed
suse enterprise sap 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise server 12
2.10.9-8.1
fixed
suse enterprise server 12 SP1
2.10.9-8.1
fixed
suse enterprise server 12 SP2
2.11.0-12.5
fixed
suse enterprise server 12 SP3
2.12.0-1.33
fixed
suse enterprise server 12 SP4
2.12.0-3.3.1
fixed
suse enterprise server 12 SP5
2.12.0-3.3.1
fixed
suse enterprise server 15
2.13.0-3.35
fixed
suse enterprise server 15 SP1
2.13.0-3.35
fixed
suse enterprise server 15 SP2
2.13.0-10.105
fixed
suse enterprise server 15 SP3
2.13.0-10.105
fixed
suse enterprise server 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise workstation 12
2.10.9-8.1
fixed
suse enterprise workstation 12 SP1
2.10.9-8.1
fixed
suse enterprise workstation 12 SP2
2.11.0-12.5
fixed
suse enterprise workstation 12 SP3
2.12.0-1.33
fixed
suse enterprise workstation 12 SP4
2.12.0-3.3.1
fixed
suse enterprise workstation 12 SP5
2.12.0-3.3.1
fixed
suse enterprise workstation 15
2.13.0-3.35
fixed
suse enterprise workstation 15 SP1
2.13.0-3.35
fixed
suse enterprise workstation 15 SP2
2.13.0-10.105
fixed
suse enterprise workstation 15 SP3
2.13.0-10.105
fixed
suse enterprise workstation 15 SP4
2.14.8-150400.1.10
fixed
libpurple-branding-upstream
suse enterprise desktop 12 SP3
2.12.0-1.33
fixed
suse enterprise desktop 12 SP4
2.12.0-3.3.1
fixed
suse enterprise desktop 15
2.13.0-3.35
fixed
suse enterprise desktop 15 SP1
2.13.0-3.35
fixed
suse enterprise desktop 15 SP2
2.13.0-10.105
fixed
suse enterprise desktop 15 SP3
2.13.0-10.105
fixed
suse enterprise desktop 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise sap 12 SP3
2.12.0-1.33
fixed
suse enterprise sap 12 SP4
2.12.0-3.3.1
fixed
suse enterprise sap 12 SP5
2.12.0-3.3.1
fixed
suse enterprise sap 15
2.13.0-3.35
fixed
suse enterprise sap 15 SP1
2.13.0-3.35
fixed
suse enterprise sap 15 SP2
2.13.0-10.105
fixed
suse enterprise sap 15 SP3
2.13.0-10.105
fixed
suse enterprise sap 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise server 12 SP3
2.12.0-1.33
fixed
suse enterprise server 12 SP4
2.12.0-3.3.1
fixed
suse enterprise server 12 SP5
2.12.0-3.3.1
fixed
suse enterprise server 15
2.13.0-3.35
fixed
suse enterprise server 15 SP1
2.13.0-3.35
fixed
suse enterprise server 15 SP2
2.13.0-10.105
fixed
suse enterprise server 15 SP3
2.13.0-10.105
fixed
suse enterprise server 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise workstation 12 SP3
2.12.0-1.33
fixed
suse enterprise workstation 12 SP4
2.12.0-3.3.1
fixed
suse enterprise workstation 12 SP5
2.12.0-3.3.1
fixed
suse enterprise workstation 15
2.13.0-3.35
fixed
suse enterprise workstation 15 SP1
2.13.0-3.35
fixed
suse enterprise workstation 15 SP2
2.13.0-10.105
fixed
suse enterprise workstation 15 SP3
2.13.0-10.105
fixed
suse enterprise workstation 15 SP4
2.14.8-150400.1.10
fixed
libpurple-client0
suse enterprise desktop 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise sap 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise server 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise workstation 15 SP4
2.14.8-150400.1.10
fixed
libpurple-devel
suse enterprise desktop 15
2.13.0-3.35
fixed
suse enterprise desktop 15 SP1
2.13.0-3.35
fixed
suse enterprise desktop 15 SP2
2.13.0-10.105
fixed
suse enterprise desktop 15 SP3
2.13.0-10.105
fixed
suse enterprise desktop 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise sap 15
2.13.0-3.35
fixed
suse enterprise sap 15 SP1
2.13.0-3.35
fixed
suse enterprise sap 15 SP2
2.13.0-10.105
fixed
suse enterprise sap 15 SP3
2.13.0-10.105
fixed
suse enterprise sap 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise server 15
2.13.0-3.35
fixed
suse enterprise server 15 SP1
2.13.0-3.35
fixed
suse enterprise server 15 SP2
2.13.0-10.105
fixed
suse enterprise server 15 SP3
2.13.0-10.105
fixed
suse enterprise server 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise workstation 15
2.13.0-3.35
fixed
suse enterprise workstation 15 SP1
2.13.0-3.35
fixed
suse enterprise workstation 15 SP2
2.13.0-10.105
fixed
suse enterprise workstation 15 SP3
2.13.0-10.105
fixed
suse enterprise workstation 15 SP4
2.14.8-150400.1.10
fixed
libpurple-lang
suse enterprise desktop 12
2.10.9-8.1
fixed
suse enterprise desktop 12 SP1
2.10.9-8.1
fixed
suse enterprise desktop 12 SP2
2.11.0-12.5
fixed
suse enterprise desktop 12 SP3
2.12.0-1.33
fixed
suse enterprise desktop 12 SP4
2.12.0-3.3.1
fixed
suse enterprise desktop 15
2.13.0-3.35
fixed
suse enterprise desktop 15 SP1
2.13.0-3.35
fixed
suse enterprise desktop 15 SP2
2.13.0-10.105
fixed
suse enterprise desktop 15 SP3
2.13.0-10.105
fixed
suse enterprise desktop 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise sap 12
2.10.9-8.1
fixed
suse enterprise sap 12 SP1
2.10.9-8.1
fixed
suse enterprise sap 12 SP2
2.11.0-12.5
fixed
suse enterprise sap 12 SP3
2.12.0-1.33
fixed
suse enterprise sap 12 SP4
2.12.0-3.3.1
fixed
suse enterprise sap 12 SP5
2.12.0-3.3.1
fixed
suse enterprise sap 15
2.13.0-3.35
fixed
suse enterprise sap 15 SP1
2.13.0-3.35
fixed
suse enterprise sap 15 SP2
2.13.0-10.105
fixed
suse enterprise sap 15 SP3
2.13.0-10.105
fixed
suse enterprise sap 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise server 12
2.10.9-8.1
fixed
suse enterprise server 12 SP1
2.10.9-8.1
fixed
suse enterprise server 12 SP2
2.11.0-12.5
fixed
suse enterprise server 12 SP3
2.12.0-1.33
fixed
suse enterprise server 12 SP4
2.12.0-3.3.1
fixed
suse enterprise server 12 SP5
2.12.0-3.3.1
fixed
suse enterprise server 15
2.13.0-3.35
fixed
suse enterprise server 15 SP1
2.13.0-3.35
fixed
suse enterprise server 15 SP2
2.13.0-10.105
fixed
suse enterprise server 15 SP3
2.13.0-10.105
fixed
suse enterprise server 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise workstation 12
2.10.9-8.1
fixed
suse enterprise workstation 12 SP1
2.10.9-8.1
fixed
suse enterprise workstation 12 SP2
2.11.0-12.5
fixed
suse enterprise workstation 12 SP3
2.12.0-1.33
fixed
suse enterprise workstation 12 SP4
2.12.0-3.3.1
fixed
suse enterprise workstation 12 SP5
2.12.0-3.3.1
fixed
suse enterprise workstation 15
2.13.0-3.35
fixed
suse enterprise workstation 15 SP1
2.13.0-3.35
fixed
suse enterprise workstation 15 SP2
2.13.0-10.105
fixed
suse enterprise workstation 15 SP3
2.13.0-10.105
fixed
suse enterprise workstation 15 SP4
2.14.8-150400.1.10
fixed
libpurple-meanwhile
suse enterprise desktop 12
2.10.9-8.1
fixed
suse enterprise desktop 12 SP1
2.10.9-8.1
fixed
suse enterprise desktop 12 SP2
2.11.0-12.5
fixed
suse enterprise sap 12
2.10.9-8.1
fixed
suse enterprise sap 12 SP1
2.10.9-8.1
fixed
suse enterprise sap 12 SP2
2.11.0-12.5
fixed
suse enterprise server 12
2.10.9-8.1
fixed
suse enterprise server 12 SP1
2.10.9-8.1
fixed
suse enterprise server 12 SP2
2.11.0-12.5
fixed
suse enterprise workstation 12
2.10.9-8.1
fixed
suse enterprise workstation 12 SP1
2.10.9-8.1
fixed
suse enterprise workstation 12 SP2
2.11.0-12.5
fixed
libpurple-plugin-sametime
suse enterprise desktop 12 SP3
2.12.0-1.33
fixed
suse enterprise desktop 12 SP4
2.12.0-3.3.1
fixed
suse enterprise desktop 15
2.13.0-3.35
fixed
suse enterprise desktop 15 SP1
2.13.0-3.35
fixed
suse enterprise desktop 15 SP2
2.13.0-10.105
fixed
suse enterprise desktop 15 SP3
2.13.0-10.105
fixed
suse enterprise desktop 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise sap 12 SP3
2.12.0-1.33
fixed
suse enterprise sap 12 SP4
2.12.0-3.3.1
fixed
suse enterprise sap 12 SP5
2.12.0-3.3.1
fixed
suse enterprise sap 15
2.13.0-3.35
fixed
suse enterprise sap 15 SP1
2.13.0-3.35
fixed
suse enterprise sap 15 SP2
2.13.0-10.105
fixed
suse enterprise sap 15 SP3
2.13.0-10.105
fixed
suse enterprise sap 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise server 12 SP3
2.12.0-1.33
fixed
suse enterprise server 12 SP4
2.12.0-3.3.1
fixed
suse enterprise server 12 SP5
2.12.0-3.3.1
fixed
suse enterprise server 15
2.13.0-3.35
fixed
suse enterprise server 15 SP1
2.13.0-3.35
fixed
suse enterprise server 15 SP2
2.13.0-10.105
fixed
suse enterprise server 15 SP3
2.13.0-10.105
fixed
suse enterprise server 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise workstation 12 SP3
2.12.0-1.33
fixed
suse enterprise workstation 12 SP4
2.12.0-3.3.1
fixed
suse enterprise workstation 12 SP5
2.12.0-3.3.1
fixed
suse enterprise workstation 15
2.13.0-3.35
fixed
suse enterprise workstation 15 SP1
2.13.0-3.35
fixed
suse enterprise workstation 15 SP2
2.13.0-10.105
fixed
suse enterprise workstation 15 SP3
2.13.0-10.105
fixed
suse enterprise workstation 15 SP4
2.14.8-150400.1.10
fixed
libpurple-tcl
suse enterprise desktop 12
2.10.9-8.1
fixed
suse enterprise desktop 12 SP1
2.10.9-8.1
fixed
suse enterprise desktop 12 SP2
2.11.0-12.5
fixed
suse enterprise desktop 12 SP3
2.12.0-1.33
fixed
suse enterprise desktop 12 SP4
2.12.0-3.3.1
fixed
suse enterprise sap 12
2.10.9-8.1
fixed
suse enterprise sap 12 SP1
2.10.9-8.1
fixed
suse enterprise sap 12 SP2
2.11.0-12.5
fixed
suse enterprise sap 12 SP3
2.12.0-1.33
fixed
suse enterprise sap 12 SP4
2.12.0-3.3.1
fixed
suse enterprise sap 12 SP5
2.12.0-3.3.1
fixed
suse enterprise server 12
2.10.9-8.1
fixed
suse enterprise server 12 SP1
2.10.9-8.1
fixed
suse enterprise server 12 SP2
2.11.0-12.5
fixed
suse enterprise server 12 SP3
2.12.0-1.33
fixed
suse enterprise server 12 SP4
2.12.0-3.3.1
fixed
suse enterprise server 12 SP5
2.12.0-3.3.1
fixed
suse enterprise workstation 12
2.10.9-8.1
fixed
suse enterprise workstation 12 SP1
2.10.9-8.1
fixed
suse enterprise workstation 12 SP2
2.11.0-12.5
fixed
suse enterprise workstation 12 SP3
2.12.0-1.33
fixed
suse enterprise workstation 12 SP4
2.12.0-3.3.1
fixed
suse enterprise workstation 12 SP5
2.12.0-3.3.1
fixed
libpurple0
suse enterprise desktop 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise sap 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise server 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise workstation 15 SP4
2.14.8-150400.1.10
fixed
pidgin
suse enterprise desktop 12
2.10.9-8.1
fixed
suse enterprise desktop 12 SP1
2.10.9-8.1
fixed
suse enterprise desktop 12 SP2
2.11.0-12.5
fixed
suse enterprise desktop 12 SP3
2.12.0-1.33
fixed
suse enterprise desktop 12 SP4
2.12.0-3.3.1
fixed
suse enterprise desktop 15
2.13.0-3.35
fixed
suse enterprise desktop 15 SP1
2.13.0-3.35
fixed
suse enterprise desktop 15 SP2
2.13.0-10.105
fixed
suse enterprise desktop 15 SP3
2.13.0-10.105
fixed
suse enterprise desktop 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise sap 12
2.10.9-8.1
fixed
suse enterprise sap 12 SP1
2.10.9-8.1
fixed
suse enterprise sap 12 SP2
2.11.0-12.5
fixed
suse enterprise sap 12 SP3
2.12.0-1.33
fixed
suse enterprise sap 12 SP4
2.12.0-3.3.1
fixed
suse enterprise sap 12 SP5
2.12.0-3.3.1
fixed
suse enterprise sap 15
2.13.0-3.35
fixed
suse enterprise sap 15 SP1
2.13.0-3.35
fixed
suse enterprise sap 15 SP2
2.13.0-10.105
fixed
suse enterprise sap 15 SP3
2.13.0-10.105
fixed
suse enterprise sap 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise server 12
2.10.9-8.1
fixed
suse enterprise server 12 SP1
2.10.9-8.1
fixed
suse enterprise server 12 SP2
2.11.0-12.5
fixed
suse enterprise server 12 SP3
2.12.0-1.33
fixed
suse enterprise server 12 SP4
2.12.0-3.3.1
fixed
suse enterprise server 12 SP5
2.12.0-3.3.1
fixed
suse enterprise server 15
2.13.0-3.35
fixed
suse enterprise server 15 SP1
2.13.0-3.35
fixed
suse enterprise server 15 SP2
2.13.0-10.105
fixed
suse enterprise server 15 SP3
2.13.0-10.105
fixed
suse enterprise server 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise workstation 12
2.10.9-8.1
fixed
suse enterprise workstation 12 SP1
2.10.9-8.1
fixed
suse enterprise workstation 12 SP2
2.11.0-12.5
fixed
suse enterprise workstation 12 SP3
2.12.0-1.33
fixed
suse enterprise workstation 12 SP4
2.12.0-3.3.1
fixed
suse enterprise workstation 12 SP5
2.12.0-3.3.1
fixed
suse enterprise workstation 15
2.13.0-3.35
fixed
suse enterprise workstation 15 SP1
2.13.0-3.35
fixed
suse enterprise workstation 15 SP2
2.13.0-10.105
fixed
suse enterprise workstation 15 SP3
2.13.0-10.105
fixed
suse enterprise workstation 15 SP4
2.14.8-150400.1.10
fixed
pidgin-devel
suse enterprise desktop 15
2.13.0-3.35
fixed
suse enterprise desktop 15 SP1
2.13.0-3.35
fixed
suse enterprise desktop 15 SP2
2.13.0-10.105
fixed
suse enterprise desktop 15 SP3
2.13.0-10.105
fixed
suse enterprise desktop 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise sap 15
2.13.0-3.35
fixed
suse enterprise sap 15 SP1
2.13.0-3.35
fixed
suse enterprise sap 15 SP2
2.13.0-10.105
fixed
suse enterprise sap 15 SP3
2.13.0-10.105
fixed
suse enterprise sap 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise server 15
2.13.0-3.35
fixed
suse enterprise server 15 SP1
2.13.0-3.35
fixed
suse enterprise server 15 SP2
2.13.0-10.105
fixed
suse enterprise server 15 SP3
2.13.0-10.105
fixed
suse enterprise server 15 SP4
2.14.8-150400.1.10
fixed
suse enterprise workstation 15
2.13.0-3.35
fixed
suse enterprise workstation 15 SP1
2.13.0-3.35
fixed
suse enterprise workstation 15 SP2
2.13.0-10.105
fixed
suse enterprise workstation 15 SP3
2.13.0-10.105
fixed
suse enterprise workstation 15 SP4
2.14.8-150400.1.10
fixed
Red Hat logo
Red Hat Enterprise Linux Releases
Red Hat Product
Release
finch
RHEL 7
0:2.10.11-5.el7
fixed
finch-devel
RHEL 7
0:2.10.11-5.el7
fixed
libpurple
RHEL 7
0:2.10.11-5.el7
fixed
libpurple-devel
RHEL 7
0:2.10.11-5.el7
fixed
libpurple-perl
RHEL 7
0:2.10.11-5.el7
fixed
libpurple-tcl
RHEL 7
0:2.10.11-5.el7
fixed
pidgin
RHEL 7
0:2.10.11-5.el7
fixed
pidgin-devel
RHEL 7
0:2.10.11-5.el7
fixed
pidgin-perl
RHEL 7
0:2.10.11-5.el7
fixed