CVE-2008-3532
EPSS 3.4%Published: 8/8/2008Modified: 4/28/2026
Also known as:DEBIAN-CVE-2008-3532
Description
The NSS plugin in libpurple in Pidgin 2.4.3 does not verify SSL certificates, which makes it easier for remote attackers to trick a user into accepting an invalid server certificate for a spoofed service.
Affected packages (1)
- Debian/pidginfrom 0, < 2.4.3-2