CVE Vulnerabilities

CVE-2008-2956

Published: Jul 01, 2008 | Modified: Nov 21, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
4.3 LOW
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V3
Ubuntu
LOW

Memory leak in Pidgin 2.0.0, and possibly other versions, allows remote attackers to cause a denial of service (memory consumption) via malformed XML documents. NOTE: this issue has been disputed by the upstream vendor, who states: I was never able to identify a scenario under which a problem occurred and the original reporter wasnt able to supply any sort of reproduction details.

Affected Software

Name Vendor Start Version End Version
Pidgin Pidgin 2.0.0 (including) 2.0.0 (including)
Gaim Ubuntu dapper *
Gaim Ubuntu upstream *
Pidgin Ubuntu devel *
Pidgin Ubuntu hardy *
Pidgin Ubuntu intrepid *
Pidgin Ubuntu jaunty *
Pidgin Ubuntu upstream *

References