CVE-2011-4602

EPSS 1.5%
Published: 12/17/2011Modified: 4/28/2026
Also known as:DEBIAN-CVE-2011-4602

Description

The XMPP protocol plugin in libpurple in Pidgin before 2.10.1 does not properly handle missing fields in (1) voice-chat and (2) video-chat stanzas, which allows remote attackers to cause a denial of service (application crash) via a crafted message.

Affected packages (1)

References (1)