CVE Database
/

CVE-2011-1091

Back to search

CVE-2011-1091

Published: Mar 14, 2011

Modified: Aug 6, 2024

PUBLISHED

Description

libymsg.c in the Yahoo! protocol plugin in libpurple in Pidgin 2.6.0 through 2.7.10 allows (1) remote authenticated users to cause a denial of service (NULL pointer dereference and application crash) via a malformed YMSG notification packet, and allows (2) remote Yahoo! servers to cause a denial of service (NULL pointer dereference and application crash) via a malformed YMSG SMS message.

VendorProductVersions

n/a

n/a

affected
n/a

References

ADV-2011-0661
vdb-entry
x_refsource_VUPEN
RHSA-2011:0616
vendor-advisory
x_refsource_REDHAT
openSUSE-SU-2012:0066
vendor-advisory
x_refsource_SUSE
46837
vdb-entry
x_refsource_BID
ADV-2011-0703
vdb-entry
x_refsource_VUPEN
FEDORA-2011-3150
vendor-advisory
x_refsource_FEDORA
43721
third-party-advisory
x_refsource_SECUNIA
SSA:2011-070-02
vendor-advisory
x_refsource_SLACKWARE
pidgin-yahoo-protocol-dos(66055)
vdb-entry
x_refsource_XF
46376
third-party-advisory
x_refsource_SECUNIA
43695
third-party-advisory
x_refsource_SECUNIA
RHSA-2011:1371
vendor-advisory
x_refsource_REDHAT
oval:org.mitre.oval:def:18402
vdb-entry
signature
x_refsource_OVAL
ADV-2011-0669
vdb-entry
x_refsource_VUPEN
FEDORA-2011-3113
vendor-advisory
x_refsource_FEDORA
ADV-2011-0643
vdb-entry
x_refsource_VUPEN

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now