CyberSec.Space Logo
返回 CVE 浏览器

CVE-2016-1000030

CRITICAL
9.8
CVSS Severity Score
EPSS Score0.1800%
EPSS Percentile39.79th
Published2018年9月5日
Last Modified2024年11月21日

Vulnerability Description

Pidgin version <2.11.0 contains a vulnerability in X.509 Certificates imports specifically due to improper check of return values from gnutls_x509_crt_init() and gnutls_x509_crt_import() that can result in code execution. This attack appear to be exploitable via custom X.509 certificate from another client. This vulnerability appears to have been fixed in 2.11.0.

Affected Platforms (CPE)

💻
Suse

Linux Enterprise Server

= 11
📦
Pidgin

Pidgin

< 2.11.0

References & Advisories

相关漏洞威胁