CVE-2008-2956
Publication date 1 July 2008
Last updated 24 July 2024
Ubuntu priority
** DISPUTED ** Memory leak in Pidgin 2.0.0, and possibly other versions, allows remote attackers to cause a denial of service (memory consumption) via malformed XML documents. NOTE: this issue has been disputed by the upstream vendor, who states: “I was never able to identify a scenario under which a problem occurred and the original reporter wasn’t able to supply any sort of reproduction details.”
Status
Package | Ubuntu Release | Status |
---|---|---|
gaim | 9.04 jaunty | Not in release |
8.10 intrepid | Not in release | |
8.04 LTS hardy | Not in release | |
7.10 gutsy | Not in release | |
6.06 LTS dapper | Ignored | |
pidgin | 9.04 jaunty | Ignored |
8.10 intrepid | Ignored | |
8.04 LTS hardy | Ignored | |
7.04 feisty | Not in release | |
6.06 LTS dapper | Not in release |
Notes
mdeslaur
as of 2008-11-20, has not been fixed by upstream AFAICT as of 2009-07-03, has not been fixed by upstream AFAICT upstream is ignoring this. let’s ignore it too.