Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Absolute path traversal vulnerability in the untar_block function in win32/untar.c in Pidgin before 2.10.10 on Windows allows remote attackers to write to arbitrary files via a drive name in a tar archive of a smiley theme.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Pidgin 绝对路径遍历漏洞
Vulnerability Description
Pidgin是一款跨平台的实时通信客户端,它支持多个常用的实时通信协议,用户可用同一个软件登录不同的实时通信服务。 Pidgin 2.10.9及之前版本的win32/untar.c脚本中‘untar_block’函数存在绝对路径遍历漏洞。远程攻击者可借助tar归档文件的驱动名利用该漏洞写入任意文件。
CVSS Information
N/A
Vulnerability Type
N/A