CVE-2016-2368
Summary
| CVE | CVE-2016-2368 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2017-01-06 21:59:00 UTC |
| Updated | 2017-03-30 01:59:00 UTC |
| Description | Multiple memory corruption vulnerabilities exist in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT data sent via the server could result in multiple buffer overflows, potentially resulting in code execution or memory disclosure. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| Pidgin: Multiple vulnerabilities (GLSA 201701-38) — Gentoo Security |
GENTOO |
security.gentoo.org |
|
| Pidgin Multiple Security Vulnerabilities |
BID |
www.securityfocus.com |
Third Party Advisory, VDB Entry |
| USN-3031-1: Pidgin vulnerabilities | Ubuntu |
UBUNTU |
www.ubuntu.com |
Third Party Advisory |
| Cisco Talos - Talos 2016 0136 |
MISC |
www.talosintelligence.com |
Technical Description, Third Party Advisory |
| Debian -- Security Information -- DSA-3620-1 pidgin |
DEBIAN |
www.debian.org |
Third Party Advisory |
| Pidgin Security Advisories |
CONFIRM |
www.pidgin.im |
Patch, Vendor Advisory |
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 671085 EulerOS Security Update for pidgin (EulerOS-SA-2019-2387)
- 710343 Gentoo Linux Pidgin Multiple Vulnerabilities (GLSA 201701-38)