CVE-2011-2943
published 2011-08-29CVE-2011-2943: The irc_msg_who function in msgs.c in the IRC protocol plugin in libpurple 2.8.0 through 2.9.0 in Pidgin before 2.10.0 does not properly validate characters in…
PriorityP417medium4.3CVSS 2.0
AVNACMAuNCNINAP
EPSS
3.60%
88.2th percentile
The irc_msg_who function in msgs.c in the IRC protocol plugin in libpurple 2.8.0 through 2.9.0 in Pidgin before 2.10.0 does not properly validate characters in nicknames, which allows user-assisted remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted nickname that is not properly handled in a WHO response.
Affected
51 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | pidgin | < pidgin 2.10.0-1 (bookworm) | pidgin 2.10.0-1 (bookworm) |
| pidgin | libpurple | — | — |
| pidgin | libpurple | — | — |
| pidgin | pidgin | <= 2.9.0 | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | — | — |
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv4.3MEDIUM
vendor_debian4.3MEDIUM
vendor_redhat4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-39wr-cgvv-f2w7: The irc_msg_who function in msgs
ghsa_unreviewed·2022-05-17
CVE-2011-2943 [MEDIUM] GHSA-39wr-cgvv-f2w7: The irc_msg_who function in msgs
The irc_msg_who function in msgs.c in the IRC protocol plugin in libpurple 2.8.0 through 2.9.0 in Pidgin before 2.10.0 does not properly validate characters in nicknames, which allows user-assisted remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted nickname that is not properly handled in a WHO response.
OSV
CVE-2011-2943: The irc_msg_who function in msgs
osv·2011-08-29·CVSS 4.3
CVE-2011-2943 [MEDIUM] CVE-2011-2943: The irc_msg_who function in msgs
The irc_msg_who function in msgs.c in the IRC protocol plugin in libpurple 2.8.0 through 2.9.0 in Pidgin before 2.10.0 does not properly validate characters in nicknames, which allows user-assisted remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted nickname that is not properly handled in a WHO response.
Red Hat
pidgin: Crash in IRC protocol plug-in by listing set of users (/who command) upon session startup
vendor_redhat·2011-07-20·CVSS 4.3
CVE-2011-2943 [MEDIUM] pidgin: Crash in IRC protocol plug-in by listing set of users (/who command) upon session startup
pidgin: Crash in IRC protocol plug-in by listing set of users (/who command) upon session startup
The irc_msg_who function in msgs.c in the IRC protocol plugin in libpurple 2.8.0 through 2.9.0 in Pidgin before 2.10.0 does not properly validate characters in nicknames, which allows user-assisted remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted nickname that is not properly handled in a WHO response.
Statement: Not vulnerable. This issue did not affect the versions of pidgin as
shipped with Red Hat Enterprise Linux 4, 5, or 6 as they contained a version of pidgin that did not support /who IRC protocol command.
Package: pidgin (Red Hat Enterprise Linux 4) - Not affected
Package: pidgin (Red Hat Enterprise Linux 5) - Not affected
Debian
CVE-2011-2943: pidgin - The irc_msg_who function in msgs.c in the IRC protocol plugin in libpurple 2.8.0...
vendor_debian·2011·CVSS 4.3
CVE-2011-2943 [MEDIUM] CVE-2011-2943: pidgin - The irc_msg_who function in msgs.c in the IRC protocol plugin in libpurple 2.8.0...
The irc_msg_who function in msgs.c in the IRC protocol plugin in libpurple 2.8.0 through 2.9.0 in Pidgin before 2.10.0 does not properly validate characters in nicknames, which allows user-assisted remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted nickname that is not properly handled in a WHO response.
Scope: local
bookworm: resolved (fixed in 2.10.0-1)
bullseye: resolved (fixed in 2.10.0-1)
forky: resolved (fixed in 2.10.0-1)
sid: resolved (fixed in 2.10.0-1)
trixie: resolved (fixed in 2.10.0-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2011-2943 pidgin: Crash in IRC protocol plug-in by listing set of users (/who command) upon session startup [fedora-all]
bugzilla·2011-08-22·CVSS 4.3
CVE-2011-2943 [MEDIUM] CVE-2011-2943 pidgin: Crash in IRC protocol plug-in by listing set of users (/who command) upon session startup [fedora-all]
CVE-2011-2943 pidgin: Crash in IRC protocol plug-in by listing set of users (/who command) upon session startup [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include the bug IDs of the
respective parent bugs filed against the "Security Response" product.
Please mention CVE ids in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/updates/new/?type_=security&bug
Bugzilla
CVE-2011-2943 pidgin: Crash in IRC protocol plug-in by listing set of users (/who command) upon session startup
bugzilla·2011-07-18·CVSS 4.3
CVE-2011-2943 [MEDIUM] CVE-2011-2943 pidgin: Crash in IRC protocol plug-in by listing set of users (/who command) upon session startup
CVE-2011-2943 pidgin: Crash in IRC protocol plug-in by listing set of users (/who command) upon session startup
A NULL pointer dereference flaw was found in the way IRC protocol plug-in of the Pidgin multiprotocol instant messaging client processed certain nick names, when list set of users (/who command) was issued upon user session startup and connecting user has had certain encoding configuration setup. A remote attacker could use a specially-crafted string as their nickname to cause the Pidgin client on the side of the victim (connecting user) to crash.
Upstream bug report:
[1] http://developer.pidgin.im/ticket/14341
Acknowledgements:
Red Hat would like to thank the Pidgin project for reporting this issue.
Discussion:
This issue did NOT affect the versions of the pidgin package,
http://developer.pidgin.im/viewmtn/revision/diff/5749f9193063800d27bef75c2388f6f9cc2f7f37/with/5c2dba4a7e2e76b76e7f472b88953a4316706d43/libpurple/protocols/irc/msgs.chttp://developer.pidgin.im/viewmtn/revision/info/5c2dba4a7e2e76b76e7f472b88953a4316706d43http://pidgin.im/news/security/?id=53http://secunia.com/advisories/45663http://secunia.com/advisories/45916http://securitytracker.com/id?1025961http://www.openwall.com/lists/oss-security/2011/08/20/2http://www.openwall.com/lists/oss-security/2011/08/22/2http://www.securityfocus.com/bid/49268https://bugzilla.redhat.com/show_bug.cgi?id=722939https://exchange.xforce.ibmcloud.com/vulnerabilities/69340https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A18005http://developer.pidgin.im/viewmtn/revision/diff/5749f9193063800d27bef75c2388f6f9cc2f7f37/with/5c2dba4a7e2e76b76e7f472b88953a4316706d43/libpurple/protocols/irc/msgs.chttp://developer.pidgin.im/viewmtn/revision/info/5c2dba4a7e2e76b76e7f472b88953a4316706d43http://pidgin.im/news/security/?id=53http://secunia.com/advisories/45663http://secunia.com/advisories/45916http://securitytracker.com/id?1025961http://www.openwall.com/lists/oss-security/2011/08/20/2http://www.openwall.com/lists/oss-security/2011/08/22/2http://www.securityfocus.com/bid/49268https://bugzilla.redhat.com/show_bug.cgi?id=722939https://exchange.xforce.ibmcloud.com/vulnerabilities/69340https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A18005
2011-08-29
Published