CVE-2013-6477
Publication date 5 February 2014
Last updated 24 July 2024
Ubuntu priority
Multiple integer signedness errors in libpurple in Pidgin before 2.10.8 allow remote attackers to cause a denial of service (application crash) via a crafted timestamp value in an XMPP message.
Status
Package | Ubuntu Release | Status |
---|---|---|
pidgin | 13.10 saucy |
Fixed 1:2.10.7-0ubuntu4.1.13.10.1
|
12.10 quantal |
Fixed 1:2.10.6-0ubuntu2.3
|
|
12.04 LTS precise |
Fixed 1:2.10.3-0ubuntu1.4
|
|
10.04 LTS lucid | Ignored end of life |
Patch details
Package | Patch details |
---|---|
pidgin |
References
Related Ubuntu Security Notices (USN)
- USN-2100-1
- Pidgin vulnerabilities
- 6 February 2014