Back to search
CVE-2011-1091
Published: Mar 14, 2011
Modified: Aug 6, 2024
PUBLISHED
Description
libymsg.c in the Yahoo! protocol plugin in libpurple in Pidgin 2.6.0 through 2.7.10 allows (1) remote authenticated users to cause a denial of service (NULL pointer dereference and application crash) via a malformed YMSG notification packet, and allows (2) remote Yahoo! servers to cause a denial of service (NULL pointer dereference and application crash) via a malformed YMSG SMS message.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
ADV-2011-0661
vdb-entry
x_refsource_VUPEN
RHSA-2011:0616
vendor-advisory
x_refsource_REDHAT
openSUSE-SU-2012:0066
vendor-advisory
x_refsource_SUSE
http://www.pidgin.im/news/security/?id=51
x_refsource_CONFIRM
46837
vdb-entry
x_refsource_BID
https://bugzilla.redhat.com/show_bug.cgi?id=683031
x_refsource_CONFIRM
ADV-2011-0703
vdb-entry
x_refsource_VUPEN
FEDORA-2011-3150
vendor-advisory
x_refsource_FEDORA
43721
third-party-advisory
x_refsource_SECUNIA
SSA:2011-070-02
vendor-advisory
x_refsource_SLACKWARE
pidgin-yahoo-protocol-dos(66055)
vdb-entry
x_refsource_XF
46376
third-party-advisory
x_refsource_SECUNIA
43695
third-party-advisory
x_refsource_SECUNIA
RHSA-2011:1371
vendor-advisory
x_refsource_REDHAT
oval:org.mitre.oval:def:18402
vdb-entry
signature
x_refsource_OVAL
ADV-2011-0669
vdb-entry
x_refsource_VUPEN
FEDORA-2011-3113
vendor-advisory
x_refsource_FEDORA
ADV-2011-0643
vdb-entry
x_refsource_VUPEN
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now