CVE-2007-4999

Publication date 29 October 2007

Last updated 24 July 2024


Ubuntu priority

libpurple in Pidgin 2.1.0 through 2.2.1, when using HTML logging, allows remote attackers to cause a denial of service (NULL dereference and application crash) via a message that contains invalid HTML data, a different vector than CVE-2007-4996.

Status

Package Ubuntu Release Status
pidgin 7.10 gutsy
Fixed 1:2.2.1-1ubuntu4.1
7.04 feisty Not in release
6.10 edgy Not in release
6.06 LTS dapper Not in release

References

Related Ubuntu Security Notices (USN)

    • USN-548-1
    • Pidgin vulnerability
    • 28 November 2007

Other references