CVE-2010-0277 PUBLISHED CVSS 5 MEDIUM

slp.c in the MSN protocol plugin in libpurple in Pidgin before 2.6.6, including 2.6.4, and Adium 1.3.8 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via a malformed MSNSLP INVITE request in an SLP message, a different issue than CVE-2010-0013.

EPSS 8.80% · 92.5th percentile

Risk Scores

CVSS v2.0
5
EPSS Score
8.80%
92.5th percentile

Affected Products

VendorProductVersions
pidginpidgin2.6.4, 2.6.1, 2.6.2
adiumadium1.3.8
n/an/an/a

Timeline

References

…and 7 more

Open in Interactive Console →