|
265421
|
8.1 |
HIGH
Network
|
pidgin canonical debian
|
pidgin ubuntu_linux debian_linux
|
An out-of-bounds write vulnerability exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT data sent via the server could cause memory corruption resulting in code execution.
|
CWE-787
Out-of-bounds Write
|
CVE-2016-2371
|
2024-11-21 11:48 |
2017-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265422
|
5.9 |
MEDIUM
Network
|
pidgin canonical debian
|
pidgin ubuntu_linux debian_linux
|
A denial of service vulnerability exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT data sent from the server could potentially result in an out-of-bounds read. A maliciou…
|
CWE-125
Out-of-bounds Read
|
CVE-2016-2370
|
2024-11-21 11:48 |
2017-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265423
|
5.9 |
MEDIUM
Network
|
pidgin canonical debian
|
pidgin ubuntu_linux debian_linux
|
A NULL pointer dereference vulnerability exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT data sent via the server could potentially result in a denial of service vulnera…
|
CWE-476
NULL Pointer Dereference
|
CVE-2016-2369
|
2024-11-21 11:48 |
2017-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265424
|
8.1 |
HIGH
Network
|
pidgin canonical debian
|
pidgin ubuntu_linux debian_linux
|
Multiple memory corruption vulnerabilities exist in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT data sent via the server could result in multiple buffer overflows, potentially…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2368
|
2024-11-21 11:48 |
2017-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265425
|
5.9 |
MEDIUM
Network
|
pidgin canonical debian
|
pidgin ubuntu_linux debian_linux
|
An information leak exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT data sent via the server could potentially result in an out-of-bounds read. A malicious user, server,…
|
CWE-200 CWE-125
Information Exposure Out-of-bounds Read
|
CVE-2016-2367
|
2024-11-21 11:48 |
2017-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265426
|
5.9 |
MEDIUM
Network
|
pidgin canonical debian
|
pidgin ubuntu_linux debian_linux
|
A denial of service vulnerability exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT data sent via the server could potentially result in an out-of-bounds read. A malicious…
|
CWE-125
Out-of-bounds Read
|
CVE-2016-2366
|
2024-11-21 11:48 |
2017-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265427
|
5.9 |
MEDIUM
Network
|
pidgin canonical debian
|
pidgin ubuntu_linux debian_linux
|
A denial of service vulnerability exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT data sent via the server could potentially result in a null pointer dereference. A mali…
|
CWE-476
NULL Pointer Dereference
|
CVE-2016-2365
|
2024-11-21 11:48 |
2017-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265428
|
9.8 |
CRITICAL
Network
|
ruby-lang
|
ruby
|
An exploitable heap overflow vulnerability exists in the Fiddle::Function.new "initialize" function functionality of Ruby. In Fiddle::Function.new "initialize" heap buffer "arg_types" allocation is m…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2339
|
2024-11-21 11:48 |
2017-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265429
|
9.8 |
CRITICAL
Network
|
ruby-lang
|
ruby
|
Type confusion exists in _cancel_eval Ruby's TclTkIp class method. Attacker passing different type of object than String as "retval" argument can cause arbitrary code execution.
|
NVD-CWE-Other
|
CVE-2016-2337
|
2024-11-21 11:48 |
2017-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265430
|
9.8 |
CRITICAL
Network
|
ruby-lang
|
ruby
|
Type confusion exists in two methods of Ruby's WIN32OLE class, ole_invoke and ole_query_interface. Attacker passing different type of object than this assumed by developers can cause arbitrary code e…
|
NVD-CWE-Other
|
CVE-2016-2336
|
2024-11-21 11:48 |
2017-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|