CyberSec.Space Logo
Back to CVE Browser

CVE-2008-2927

MEDIUM
6.8
CVSS Severity Score
EPSS Score0.1620%
EPSS Percentile4.89th
PublishedJul 7, 2008
Last ModifiedApr 23, 2026

Vulnerability Description

Multiple integer overflows in the msn_slplink_process_msg functions in the MSN protocol handler in (1) libpurple/protocols/msn/slplink.c and (2) libpurple/protocols/msnp9/slplink.c in Pidgin before 2.4.3 and Adium before 1.3 allow remote attackers to execute arbitrary code via a malformed SLP message with a crafted offset value, a different vulnerability than CVE-2008-2955.

Affected Platforms (CPE)

πŸ“¦
Pidgin

Pidgin

<= 2.4.2
πŸ“¦
Pidgin

Pidgin

= 2.0.0
πŸ“¦
Pidgin

Pidgin

= 2.0.1
πŸ“¦
Pidgin

Pidgin

= 2.0.2
πŸ“¦
Pidgin

Pidgin

= 2.1.0
πŸ“¦
Pidgin

Pidgin

= 2.1.1
πŸ“¦
Pidgin

Pidgin

= 2.2.0
πŸ“¦
Pidgin

Pidgin

= 2.2.1
πŸ“¦
Pidgin

Pidgin

= 2.2.2
πŸ“¦
Pidgin

Pidgin

= 2.3.0
πŸ“¦
Pidgin

Pidgin

= 2.3.1
πŸ“¦
Pidgin

Pidgin

= 2.4.0
πŸ“¦
Pidgin

Pidgin

= 2.4.1
πŸ“¦
Adium

Adium

<= 1.2.7
πŸ“¦
Adium

Adium

= 1.0
πŸ“¦
Adium

Adium

= 1.0.1
πŸ“¦
Adium

Adium

= 1.0.2
πŸ“¦
Adium

Adium

= 1.0.3
πŸ“¦
Adium

Adium

= 1.0.4
πŸ“¦
Adium

Adium

= 1.0.5
πŸ“¦
Adium

Adium

= 1.1
πŸ“¦
Adium

Adium

= 1.1.1
πŸ“¦
Adium

Adium

= 1.1.2
πŸ“¦
Adium

Adium

= 1.1.3
πŸ“¦
Adium

Adium

= 1.1.4

References & Advisories

Related Vulnerabilities