VDB
CVE-2009-1373
CVE-2009-1373
PUBLISHED
CVSS 7.099999904632568 HIGH
Buffer overflow in the XMPP SOCKS5 bytestream server in Pidgin (formerly Gaim) before 2.5.6 allows remote authenticated users to execute arbitrary code via vectors involving an outbound XMPP file transfer. NOTE: some of these details are obtained from third party information.
EPSS 8.36% · 92.4th percentile
Risk Scores
CVSS 2.0
7.099999904632568
EPSS Score
8.36%
92.4th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| pidgin | pidgin | 0, 2.0.0, 2.0.1 |
Timeline
- May 26, 2009 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Feb 3, 2023 EPSS Score
- Feb 9, 2023 EPSS Score
- Feb 13, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 14, 2023 EPSS Score
- May 25, 2023 EPSS Score
References
- FEDORA-2009-5597 vendor-advisory
- RHSA-2009:1060 vendor-advisory
- USN-781-2 vendor-advisory
- RHSA-2009:1059 vendor-advisory
- GLSA-200905-07 vendor-advisory
- oval:org.mitre.oval:def:9005 vdb
- 35067 vdb
- FEDORA-2009-5583 vendor-advisory
- 35329 third-party-advisory
- USN-781-1 vendor-advisory
- oval:org.mitre.oval:def:17722 vdb
- DSA-1805 vendor-advisory
- MDVSA-2009:140 vendor-advisory
- 35294 third-party-advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=500488 url
- 35188 third-party-advisory
- pidgin-xmppsocks5-bo(50682) vdb
- 35194 third-party-advisory
- FEDORA-2009-5552 vendor-advisory
- 35202 third-party-advisory
…and 6 more