Out-of-bounds read In libgadu
Description
Integer overflow in libpurple/protocols/gg/lib/http.c in the Gadu-Gadu (gg) parser in Pidgin before 2.10.8 allows remote attackers to have an unspecified impact via a large Content-Length value, which triggers a buffer overflow.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
debian 12 | 1:1.11.3-1 | ||
debian 12 | 2.10.8-1 | ||
debian 11 | 1:1.11.3-1 | ||
debian 11 | 2.10.8-1 | ||
debian 14 | 1:1.11.3-1 | ||
debian 14 | 2.10.8-1 | ||
rpm rhel6 | 0:2.7.9-27.el6 | ||
debian 13 | 2.10.8-1 | ||
debian 13 | 1:1.11.3-1 | ||
rpm rhel5 | 0:2.6.6-32.el5 |
Aliases
1. 2. 3. 4. 5.