1
PublicDateAtUSN: 2014-02-05
2
Candidate: CVE-2013-6485
5
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-6485
6
http://www.pidgin.im/news/security/?id=80
7
https://usn.ubuntu.com/usn/usn-2100-1
9
Buffer overflow in util.c in libpurple in Pidgin before 2.10.8 allows
10
remote HTTP servers to cause a denial of service (application crash) or
11
possibly have unspecified other impact via an invalid chunk-size field in
12
chunked transfer-coding data.
17
Discovered-by: Matt Jones
21
upstream: http://hg.pidgin.im/pidgin/main/rev/c9e5aba2dafd
22
upstream_pidgin: released (2.10.8)
23
lucid_pidgin: ignored (reached end-of-life)
24
precise_pidgin: released (1:2.10.3-0ubuntu1.4)
25
quantal_pidgin: released (1:2.10.6-0ubuntu2.3)
26
saucy_pidgin: released (1:2.10.7-0ubuntu4.1.13.10.1)
27
devel_pidgin: released (1:2.10.9-0ubuntu1)