CVE-2013-6481 PUBLISHED CVSS 5 MEDIUM

libpurple/protocols/yahoo/libymsg.c in Pidgin before 2.10.8 allows remote attackers to cause a denial of service (crash) via a Yahoo! P2P message with a crafted length field, which triggers a buffer over-read.

EPSS 1.01% · 76.9th percentile

Risk Scores

CVSS v2.0
5
EPSS Score
1.01%
76.9th percentile

Affected Products

VendorProductVersions
pidginpidgin2.10.6, 0, 2.0.0
n/an/an/a

Timeline

References

Open in Interactive Console →