CVE Tools

Mark-spenser-shon-igan-i-dr

10 CVEs tracked since 2014. Since Feb 2014, none of them reached CISA KEV.

Mark-spenser-shon-igan-i-dr CVEs per month

Feb 2014 to Feb 2014. Point at a month, or focus the strip and use the arrow keys.
Mark-spenser-shon-igan-i-dr CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2014-02100

Products

The products that kept showing up in Mark-spenser-shon-igan-i-dr's monthly top three, with their CVEs summed over those months.

  1. Pidgin101 month

Latest CVEs

The 12 most recently published vulnerabilities affecting Mark-spenser-shon-igan-i-dr.

  1. CVE-2022-26491An issue was discovered in Pidgin before 2.14.9. A remote attacker who can spoof DNS responses can redirect a client connection to a malicious server. The client will perform TLS certificate verifi...5.9
  2. CVE-2016-2368Multiple memory corruption vulnerabilities exist in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT data sent via the server could result in multiple buffer overflows, potential...8.1
  3. CVE-2013-6481libpurple/protocols/yahoo/libymsg.c in Pidgin before 2.10.8 allows remote attackers to cause a denial of service (crash) via a Yahoo! P2P message with a crafted length field, which triggers a buffe...5.0
  4. CVE-2013-6482Pidgin before 2.10.8 allows remote MSN servers to cause a denial of service (NULL pointer dereference and crash) via a crafted (1) SOAP response, (2) OIM XML response, or (3) Content-Length header.5.0
  5. CVE-2013-6487Integer overflow in libpurple/protocols/gg/lib/http.c in the Gadu-Gadu (gg) parser in Pidgin before 2.10.8 allows remote attackers to have an unspecified impact via a large Content-Length value, wh...7.5
  6. CVE-2013-6490The SIMPLE protocol functionality in Pidgin before 2.10.8 allows remote attackers to have an unspecified impact via a negative Content-Length header, which triggers a buffer overflow.10.0
  7. CVE-2013-6489Integer signedness error in the MXit functionality in Pidgin before 2.10.8 allows remote attackers to cause a denial of service (segmentation fault) via a crafted emoticon value, which triggers an ...5.0
  8. CVE-2014-0020The IRC protocol plugin in libpurple in Pidgin before 2.10.8 does not validate argument counts, which allows remote IRC servers to cause a denial of service (application crash) via a crafted message.5.0
  9. CVE-2013-6483The XMPP protocol plugin in libpurple in Pidgin before 2.10.8 does not properly determine whether the from address in an iq reply is consistent with the to address in an iq request, which allows re...6.4
  10. CVE-2013-6485Buffer overflow in util.c in libpurple in Pidgin before 2.10.8 allows remote HTTP servers to cause a denial of service (application crash) or possibly have unspecified other impact via an invalid c...5.0
  11. CVE-2013-6479util.c in libpurple in Pidgin before 2.10.8 does not properly allocate memory for HTTP responses that are inconsistent with the Content-Length header, which allows remote HTTP servers to cause a de...5.0
  12. CVE-2013-6484The STUN protocol implementation in libpurple in Pidgin before 2.10.8 allows remote STUN servers to cause a denial of service (out-of-bounds write operation and application crash) by triggering a s...5.0

The record

Peak rank
#16 in Feb 2014
Busiest month shown
Feb 2014, 10 CVEs
Months with a KEV entry
0 since Feb 2014
Monthly snapshots
1 since 2014
Mark-spenser-shon-igan-i-dr's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store