PublicDate: 2009-05-26 15:30:00 UTC Candidate: CVE-2009-1374 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1374 https://ubuntu.com/security/notices/USN-781-1 Description: Buffer overflow in the decrypt_out function in Pidgin (formerly Gaim) before 2.5.6 allows remote attackers to cause a denial of service (application crash) via a QQ packet. Ubuntu-Description: Notes: Bugs: https://bugs.launchpad.net/bugs/384222 Priority: medium Discovered-by: Assigned-to: CVSS: Patches_pidgin: upstream: http://developer.pidgin.im/viewmtn/revision/info/ad057b7532610edb11caffebfa98068b6239d787 upstream: http://developer.pidgin.im/viewmtn/revision/info/2c9a1153bc1694e9656752a73526bd6b7461265b upstream_pidgin: released (2.5.6) dapper_pidgin: DNE feisty_pidgin: DNE hardy_pidgin: released (1:2.4.1-1ubuntu2.4) intrepid_pidgin: released (1:2.5.2-0ubuntu1.2) jaunty_pidgin: released (1:2.5.5-1ubuntu8.1) devel_pidgin: not-affected (1:2.5.6-1ubuntu1) Patches_gaim: upstream_gaim: released (2.5.6) dapper_gaim: not-affected (code not present) gutsy_gaim: DNE hardy_gaim: DNE intrepid_gaim: DNE jaunty_gaim: DNE devel_gaim: DNE