Pidgin Security Advisory
| Title | Remote DoS in multiple protocols |
| Date | 2009-03-20 |
| CVE Name | CVE-2009-1375 |
| Discovered By | Josef Andrysek |
| Summary | Remote denial of service that affects several protocols |
| Description | A buffer maintained by PurpleCircBuffer may be corrupted if it's exactly full and then more bytes are added to it, leading to a crash. This structure is used by the XMPP and Sametime protocol plugins. |
| Fixed in Version | 2.5.6 |
| Fix | PurpleCircBuffer now correctly checks bounds. |
Return to Security Advisory Index