what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 1 of 1 RSS Feed

Files

Mandriva Linux Security Advisory 2010-085
Posted Apr 28, 2010
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory 2010-085 - The OSCAR protocol plugin in libpurple in Pidgin before 2.6.3 and Adium before 1.3.7 allows remote attackers to cause a denial of service (application crash) via crafted contact-list data for ICQ and possibly AIM, as demonstrated by the SIM IM client. Directory traversal vulnerability in slp.c in the MSN protocol plugin in libpurple in Pidgin 2.6.4 and Adium 1.3.8 allows remote attackers to read arbitrary files via a .. (dot dot) in an application/x-msnmsgrp2p MSN emoticon (aka custom smiley) request, a related issue to CVE-2004-0122. Directory traversal vulnerability in slp.c in the MSN protocol plugin in libpurple in Pidgin 2.6.4 and Adium 1.3.8 allows remote attackers to read arbitrary files via a .. (dot dot) in an application/x-msnmsgrp2p MSN emoticon (aka custom smiley) request, a related issue to CVE-2004-0122. Other issues have also been identified.

tags | advisory, remote, denial of service, arbitrary, protocol
systems | linux, mandriva
advisories | CVE-2009-3615, CVE-2010-0013, CVE-2010-0013, CVE-2010-0277, CVE-2010-0420, CVE-2010-0423
SHA-256 | 209643718e8208dbef837eae2a003ecf460b9808598317b3e97888b1d0d1d215
Page 1 of 1
Back1Next

Top Authors In Last 30 Days

Recent News

News RSS Feed
Dozens Of Popular Minecraft Mods Found Infected With Fracturiser Malware
Posted Jun 8, 2023

tags | headline, hacker, malware, microsoft, backdoor
VMware Discloses Trio Of High Severity Bugs In Network Monitoring Tool
Posted Jun 8, 2023

tags | headline, flaw
Hacker Attempts To Exploit Old And New Bugs Up 55%
Posted Jun 8, 2023

tags | headline, hacker, flaw
People Are Pirating GPT-4 By Scraping Exposed API Keys
Posted Jun 8, 2023

tags | headline, hacker, cybercrime, data loss, botnet, fraud, password, pirate
Deepfakes Of Victims Used In Sextortion Attacks Spike, FBI Warns
Posted Jun 7, 2023

tags | headline, privacy, cybercrime, fraud, fbi
BBC, BA, And Boots Issued With Ultimatum By Cyber Gang Clop
Posted Jun 7, 2023

tags | headline, hacker, malware, britain, data loss, cryptography
What's Really Changed 10 Years After The Snowden Revelations
Posted Jun 7, 2023

tags | headline, government, usa, russia, data loss, spyware, backdoor, nsa
ByteDance Accused Of Helping China Spy On Hong Kong Activists
Posted Jun 7, 2023

tags | headline, government, china, spyware, social
Crypto Catastrophe Stikes Some Atomic Wallet Users, Over $35 Million Thought Stolen
Posted Jun 6, 2023

tags | headline, hacker, bank, data loss, fraud, cryptography
Microsoft To Pay $20m For Child Privacy Violations
Posted Jun 6, 2023

tags | headline, government, privacy, microsoft, usa
View More News →
packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close