CVE-2009-3025
published 2009-08-31CVE-2009-3025: Unspecified vulnerability in Pidgin 2.6.0 allows remote attackers to cause a denial of service (crash) via a link in a Yahoo IM.
PriorityP416medium4.3CVSS 2.0
AVNACMAuNCNINAP
EPSS
1.88%
77.2th percentile
Unspecified vulnerability in Pidgin 2.6.0 allows remote attackers to cause a denial of service (crash) via a link in a Yahoo IM.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | pidgin | < pidgin 2.6.1-1 (bookworm) | pidgin 2.6.1-1 (bookworm) |
| pidgin | pidgin | — | — |
| pidgin | pidgin | >= 0 < 2.6.1-1 | 2.6.1-1 |
| pidgin | pidgin | >= 0 < 2.6.1-1 | 2.6.1-1 |
| pidgin | pidgin | >= 0 < 2.6.1-1 | 2.6.1-1 |
| pidgin | pidgin | >= 0 < 2.6.1-1 | 2.6.1-1 |
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv4.3MEDIUM
vendor_debian4.3LOW
vendor_redhat4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-3gcj-hw9g-gmm2: Unspecified vulnerability in Pidgin 2
ghsa_unreviewed·2022-05-02
CVE-2009-3025 [MEDIUM] GHSA-3gcj-hw9g-gmm2: Unspecified vulnerability in Pidgin 2
Unspecified vulnerability in Pidgin 2.6.0 allows remote attackers to cause a denial of service (crash) via a link in a Yahoo IM.
OSV
CVE-2009-3025: Unspecified vulnerability in Pidgin 2
osv·2009-08-31·CVSS 4.3
CVE-2009-3025 [MEDIUM] CVE-2009-3025: Unspecified vulnerability in Pidgin 2
Unspecified vulnerability in Pidgin 2.6.0 allows remote attackers to cause a denial of service (crash) via a link in a Yahoo IM.
Debian
CVE-2009-3025: pidgin - Unspecified vulnerability in Pidgin 2.6.0 allows remote attackers to cause a den...
vendor_debian·2009·CVSS 4.3
CVE-2009-3025 [MEDIUM] CVE-2009-3025: pidgin - Unspecified vulnerability in Pidgin 2.6.0 allows remote attackers to cause a den...
Unspecified vulnerability in Pidgin 2.6.0 allows remote attackers to cause a denial of service (crash) via a link in a Yahoo IM.
Scope: local
bookworm: resolved (fixed in 2.6.1-1)
bullseye: resolved (fixed in 2.6.1-1)
forky: resolved (fixed in 2.6.1-1)
sid: resolved (fixed in 2.6.1-1)
trixie: resolved (fixed in 2.6.1-1)
Red Hat
CVE-2009-3025: Unspecified vulnerability in Pidgin 2
vendor_redhat·CVSS 4.3
CVE-2009-3025 [MEDIUM] CVE-2009-3025: Unspecified vulnerability in Pidgin 2
Unspecified vulnerability in Pidgin 2.6.0 allows remote attackers to cause a denial of service (crash) via a link in a Yahoo IM.
Statement: Not vulnerable. This issue did not affect the versions of pidgin as shipped with Red Hat Enterprise Linux 3, 4, or 5.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://developer.pidgin.im/wiki/ChangeLoghttp://www.openwall.com/lists/oss-security/2009/08/19/2https://exchange.xforce.ibmcloud.com/vulnerabilities/52994https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6167http://developer.pidgin.im/wiki/ChangeLoghttp://www.openwall.com/lists/oss-security/2009/08/19/2https://exchange.xforce.ibmcloud.com/vulnerabilities/52994https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6167
2009-08-31
Published