CVE-2014-3698
29.10.2014, 10:55
The jabber_idn_validate function in jutil.c in the Jabber protocol plugin in libpurple in Pidgin before 2.10.10 allows remote attackers to obtain sensitive information from process memory via a crafted XMPP message.Enginsight
| Vendor | Product | Version |
|---|---|---|
| pidgin | pidgin | 𝑥 ≤ 2.10.9 |
| pidgin | pidgin | 2.10.0 |
| pidgin | pidgin | 2.10.1 |
| pidgin | pidgin | 2.10.2 |
| pidgin | pidgin | 2.10.3 |
| pidgin | pidgin | 2.10.4 |
| pidgin | pidgin | 2.10.5 |
| pidgin | pidgin | 2.10.6 |
| pidgin | pidgin | 2.10.7 |
| pidgin | pidgin | 2.10.8 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References