Security Advisory

CVE-2016-2370

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-01-06 21:00:00
Last updated 2024-08-05 23:24:49
Assigner certcc
CVSS score not scored
State PUBLISHED

Description

A denial of service vulnerability exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT data sent from the server could potentially result in an out-of-bounds read. A malicious server or man-in-the-middle attacker can send invalid data to trigger this vulnerability.