PT-2016-3142 · Pidgin+2 · Pidgin+2

Yves Younan

·

Published

2016-06-23

·

Updated

2025-04-20

·

CVE-2016-2368

CVSS v3.1

8.1

High

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Pidgin (affected versions not specified)
Description The issue is related to multiple memory corruption vulnerabilities in the handling of the MXIT protocol. These vulnerabilities can be exploited by sending specially crafted MXIT data via the server, potentially resulting in buffer overflows. This could lead to code execution or memory disclosure. An attacker, acting remotely, could exploit these vulnerabilities to disclose memory or inject arbitrary code.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2016-1727
BDU:2017-01653
CVE-2016-2368
DLA-542-1
DSA-3620-1
MGASA-2016-0236
USN-3031-1

Affected Products

Alt Linux
Pidgin
Ubuntu