Logo
vulnerabilityCVE-2011-3594
Name
CVE-2011-3594
Source
NVD ( link)Debian ( link)
Description
The g_markup_escape_text function in the SILC protocol plug-in in libpurple 2.10.0 and earlier, as used in Pidgin and possibly other products, allows remote attackers to cause a denial of service (crash) via invalid UTF-8 sequences that trigger use of invalid pointers and an out-of-bounds read, related to interactions with certain versions of glib2.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
pidgin
Not Affected

Vulnerability Rating#


4.3
CVSSv2

Others affected components#


Name
Project
Project Version
Version
Status
yocto
kirkstone
2.14.2
Not Affected
yocto
scarthgap
2.14.2
Not Affected