PT-2016-5140 · Pidgin+3 · Pidgin+3

Yves Younan

·

Published

2016-06-23

·

Updated

2025-04-20

·

CVE-2016-2371

CVSS v3.1

8.1

High

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Pidgin (affected versions not specified)
Description An out-of-bounds write issue exists in the handling of the MXIT protocol, which could be triggered by specially crafted MXIT data sent via the server, potentially causing memory corruption and resulting in code execution.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2016-1727
CVE-2016-2371
DLA-542-1
DSA-3620-1
MGASA-2016-0236
SUSE-SU-2016:2416-1
USN-3031-1

Affected Products

Alt Linux
Pidgin
Suse
Ubuntu