CVE-2013-6477
EPSS 1.0%pidgin - several
Published: 2/6/2014Modified: 4/28/2026
Description
Multiple integer signedness errors in libpurple in Pidgin before 2.10.8 allow remote attackers to cause a denial of service (application crash) via a crafted timestamp value in an XMPP message.
Affected packages (2)
- Debian/pidginfrom 0, < 2.10.8-1
- Debian/pidginfrom 0, < 2.10.9-1~deb7u1