CVE-2009-1889
Publication date 1 July 2009
Last updated 24 July 2024
Ubuntu priority
The OSCAR protocol implementation in Pidgin before 2.5.8 misinterprets the ICQWebMessage message type as the ICQSMS message type, which allows remote attackers to cause a denial of service (application crash) via a crafted ICQ web message that triggers allocation of a large amount of memory.
Status
Package | Ubuntu Release | Status |
---|---|---|
pidgin | ||
Patch details
Package | Patch details |
---|---|
pidgin |