Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
gtkutils.c in Pidgin before 2.10.8 on Windows allows user-assisted remote attackers to execute arbitrary programs via a message containing a file: URL that is improperly handled during construction of an explorer.exe command. NOTE: this vulnerability exists because of an incomplete fix for CVE-2011-3185.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Pidgin‘gtkutils.c’文件输入验证漏洞
Vulnerability Description
Pidgin是一款跨平台的实时通信客户端,它支持多个常用的实时通信协议,用户可用同一个软件登录不同的实时通信服务。 Windows平台上的Pidgin 2.10.7及之前的版本中的gtkutils.c文件中存在输入验证漏洞。远程攻击者可在网络共享位置构造恶意的file://URI利用该漏洞执行任意程序。
CVSS Information
N/A
Vulnerability Type
N/A