1
PublicDateAtUSN: 2014-02-05
2
Candidate: CVE-2014-0020
5
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0020
6
http://www.pidgin.im/news/security/?id=85
7
https://usn.ubuntu.com/usn/usn-2100-1
9
The IRC protocol plugin in libpurple in Pidgin before 2.10.8 does not
10
validate argument counts, which allows remote IRC servers to cause a denial
11
of service (application crash) via a crafted message.
16
Discovered-by: Daniel Atallah
20
upstream: http://hg.pidgin.im/pidgin/main/rev/a167504359e5
21
upstream: http://hg.pidgin.im/pidgin/main/rev/9f132a6855cd
22
upstream: http://hg.pidgin.im/pidgin/main/rev/5845d9fa7084
23
upstream: http://hg.pidgin.im/pidgin/main/rev/6b0e0566af20
24
upstream: http://hg.pidgin.im/pidgin/main/rev/4d9be297d399
25
upstream: http://hg.pidgin.im/pidgin/main/rev/7d0fb0c6d8d4
26
upstream_pidgin: released (2.10.8)
27
lucid_pidgin: ignored (reached end-of-life)
28
precise_pidgin: released (1:2.10.3-0ubuntu1.4)
29
quantal_pidgin: released (1:2.10.6-0ubuntu2.3)
30
saucy_pidgin: released (1:2.10.7-0ubuntu4.1.13.10.1)
31
devel_pidgin: released (1:2.10.9-0ubuntu1)