CVE-2016-2371
NONE EPSS 86.5%
Published Jan 6, 20179y ago · Modified Jun 17, 20262w ago
Published Jan 6, 2017 9y ago
Last Modified Jun 17, 2026 2w ago
Description
An out-of-bounds write vulnerability exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT data sent via the server could cause memory corruption resulting in code execution.
Threat Intelligence
EPSS Exploit Probability
86.5% percentile
Exploit & Patch Status
No Known Exploit
Patch Available
Weaknesses 1
CWE-787 Out-of-bounds Write Memory Safety
Affected Products 5
References 6
- debian.org http://www.debian.org/security/2016/dsa-3620
- pidgin.im http://www.pidgin.im/news/security/?id=104
- securityfocus.com http://www.securityfocus.com/bid/91335
- talosintelligence.com http://www.talosintelligence.com/reports/TALOS-2016-0139/
- ubuntu.com http://www.ubuntu.com/usn/USN-3031-1
- security.gentoo.org https://security.gentoo.org/glsa/201701-38
Remediation
- pidgin.im http://www.pidgin.im/news/security/?id=104