PT-2016-5886 · Pidgin+2 · Pidgin+2

Yves Younan

·

Publicado

2016-06-23

·

Atualizado

2017-03-30

·

CVE-2016-4323

CVSS v2.0

5.8

Média

VetorAV:N/AC:M/Au:N/C:N/I:P/A:P
Name of the Vulnerable Software and Affected Versions Pidgin (affected versions not specified)
Description A directory traversal issue exists in Pidgin's handling of the MXIT protocol. This could allow a malicious server or an attacker with network access to potentially overwrite files by sending specially crafted MXIT data. The issue can be triggered when an invalid filename for a splash image is provided.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Path traversal

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2016-1727
CVE-2016-4323
DLA-542-1
DSA-3620-1
MGASA-2016-0236
USN-3031-1

Produtos afetados

Alt Linux
Pidgin
Ubuntu