Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The clientautoresp function in family_icbm.c in the oscar protocol plugin in libpurple in Pidgin before 2.7.2 allows remote authenticated users to cause a denial of service (NULL pointer dereference and application crash) via an X-Status message that lacks the expected end tag for a (1) desc or (2) title element.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Pidgin 'X-Status'消息拒绝服务漏洞
Vulnerability Description
Pidgin是一款跨平台的实时通信客户端,它支持多个常用的实时通信协议,用户可用同一个软件登录不同的实时通信服务。 Pidgin 2.7.2之前版本中的libpurple中oscar protocol插件family_icbm.c的clientautoresp函数存在漏洞。远程认证用户可以借助缺少预期结束标签的(1) desc 或者(2) title元素的X-Status信息导致服务拒绝(空指针引用和应用崩溃)。
CVSS Information
N/A
Vulnerability Type
N/A