CVE-2016-2374
published 2017-01-06CVE-2016-2374: An exploitable memory corruption vulnerability exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT MultiMX message sent via the…
PriorityP347high8.1CVSS 3.0
AVNACHPRNUINSUCHIHAH
EPSS
3.23%
86.9th percentile
An exploitable memory corruption vulnerability exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT MultiMX message sent via the server can result in an out-of-bounds write leading to memory disclosure and code execution.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | debian_linux | — | — |
| debian | pidgin | < pidgin 2.11.0-1 (bookworm) | pidgin 2.11.0-1 (bookworm) |
| pidgin | pidgin | <= 2.10.12 | — |
| pidgin | pidgin | — | — |
| pidgin | pidgin | >= 0 < 2.11.0-1 | 2.11.0-1 |
| pidgin | pidgin | >= 0 < 2.11.0-1 | 2.11.0-1 |
| pidgin | pidgin | >= 0 < 2.11.0-1 | 2.11.0-1 |
| pidgin | pidgin | >= 0 < 2.11.0-1 | 2.11.0-1 |
CVSS provenance
nvdv3.08.1HIGHCVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv8.1HIGH
vendor_debian8.1HIGH
vendor_redhat8.1HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Pidgin vulnerabilities
vendor_ubuntu·2016-07-12
CVE-2016-2365 Pidgin vulnerabilities
Title: Pidgin vulnerabilities
Summary: Pidgin could be made to crash or run programs if it received
specially crafted network traffic.
Yves Younan discovered that Pidgin contained multiple issues in the MXit
protocol support. A remote attacker could use this issue to cause Pidgin to
crash, resulting in a denial of service, or possibly execute arbitrary
code.
Instructions: After a standard system update you need to restart Pidgin to make all the
necessary changes.
Red Hat
pidgin: MXIT MultiMX Message Code Execution Vulnerability
vendor_redhat·2016-06-21·CVSS 8.1
CVE-2016-2374 [HIGH] CWE-787 pidgin: MXIT MultiMX Message Code Execution Vulnerability
pidgin: MXIT MultiMX Message Code Execution Vulnerability
An exploitable memory corruption vulnerability exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT MultiMX message sent via the server can result in an out-of-bounds write leading to memory disclosure and code execution.
Package: pidgin (Red Hat Enterprise Linux 5) - Will not fix
Package: pidgin (Red Hat Enterprise Linux 6) - Will not fix
Package: pidgin (Red Hat Enterprise Linux 7) - Will not fix
Debian
CVE-2016-2374: pidgin - An exploitable memory corruption vulnerability exists in the handling of the MXI...
vendor_debian·2016·CVSS 8.1
CVE-2016-2374 [HIGH] CVE-2016-2374: pidgin - An exploitable memory corruption vulnerability exists in the handling of the MXI...
An exploitable memory corruption vulnerability exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT MultiMX message sent via the server can result in an out-of-bounds write leading to memory disclosure and code execution.
Scope: local
bookworm: resolved (fixed in 2.11.0-1)
bullseye: resolved (fixed in 2.11.0-1)
forky: resolved (fixed in 2.11.0-1)
sid: resolved (fixed in 2.11.0-1)
trixie: resolved (fixed in 2.11.0-1)
GHSA
GHSA-qm22-h7gg-wr34: An exploitable memory corruption vulnerability exists in the handling of the MXIT protocol in Pidgin
ghsa_unreviewed·2022-05-17
CVE-2016-2374 [HIGH] CWE-125 GHSA-qm22-h7gg-wr34: An exploitable memory corruption vulnerability exists in the handling of the MXIT protocol in Pidgin
An exploitable memory corruption vulnerability exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT MultiMX message sent via the server can result in an out-of-bounds write leading to memory disclosure and code execution.
OSV
CVE-2016-2374: An exploitable memory corruption vulnerability exists in the handling of the MXIT protocol in Pidgin
osv·2017-01-06·CVSS 8.1
CVE-2016-2374 [HIGH] CVE-2016-2374: An exploitable memory corruption vulnerability exists in the handling of the MXIT protocol in Pidgin
An exploitable memory corruption vulnerability exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT MultiMX message sent via the server can result in an out-of-bounds write leading to memory disclosure and code execution.
No detection rules found.
No public exploits indexed.
Talos
Vulnerability Spotlight: Apple Garage Band Out of Bounds Write Vulnerability
blogs_talos·2017-02-14·CVSS 8.8
CVE-2017-2372 [HIGH] Vulnerability Spotlight: Apple Garage Band Out of Bounds Write Vulnerability
## Vulnerability Spotlight: Apple Garage Band Out of Bounds Write Vulnerability
Discovered by Tyler Bohan of Cisco Talos
## Overview Talos is disclosing TALOS-2016-0262 ( CVE-2017-2372 ) and TALOS-2017-0275 ( CVE-2017-2374 ), an out of bounds write vulnerability in Apple GarageBand. GarageBand is a music creation program, allowing users to create and edit music easily and effectively from their Mac computer. GarageBand is installed by default on all Mac computers so there is a significant number of potential victims. This issue was partially resolved on 1/18/17 with a patch which addressed CVE-2017-2372, the patch released on 2/13/17 addressed CVE-2017-2374 resolving the issue.
This particular vulnerability is the result of the way the application parses the proprietary file format used
Talos
Vulnerability Spotlight: Apple Garage Band Out of Bounds Write Vulnerability
blogs_talos·2017-02-14·CVSS 8.8
CVE-2017-2372 [HIGH] Vulnerability Spotlight: Apple Garage Band Out of Bounds Write Vulnerability
Discovered by Tyler Bohan of Cisco Talos
## Overview Talos is disclosingTALOS-2016-0262(CVE-2017-2372) andTALOS-2017-0275(CVE-2017-2374), an out of bounds write vulnerability in Apple GarageBand. GarageBand is a music creation program, allowing users to create and edit music easily and effectively from their Mac computer. GarageBand is installed by default on all Mac computers so there is a significant number of potential victims. This issue was partially resolved on 1/18/17 with a patch which addressed CVE-2017-2372, the patch released on 2/13/17 addressed CVE-2017-2374 resolving the issue.
This particular vulnerability is the result of the way the application parses the proprietary file format used for GarageBand files, .band. The format is broken into chunks with a specific length fie
Talos
Vulnerability Spotlight: Pidgin Vulnerabilities
blogs_talos·2016-06-21·CVSS 5.9
[MEDIUM] Vulnerability Spotlight: Pidgin Vulnerabilities
## Vulnerability Spotlight: Pidgin Vulnerabilities
These vulnerabilities were discovered by Yves Younan .
Pidgin is a universal chat client that is used on millions of systems worldwide. The Pidgin chat client enables you to communicate on multiple chat networks simultaneously. Talos has identified multiple vulnerabilities in the way Pidgin handles the MXit protocol. These vulnerabilities fall into the following four categories.
Information Leakage
Denial Of Service
Directory Traversal
Buffer Overflow
The following vulnerabilities were identified (listed numerically by CVE):
CVE-2016-2365 - Pidgin MXIT Markup Command Denial of Service Vulnerability
CVE-2016-2366 - Pidgin MXIT Table Command Denial of Service Vulnerability
CVE-2016-2367 - Pidgin MXIT Avatar Length Memory Disclosure
Talos
Vulnerability Spotlight: Pidgin Vulnerabilities
blogs_talos·2016-06-21·CVSS 5.9
[MEDIUM] Vulnerability Spotlight: Pidgin Vulnerabilities
These vulnerabilities were discovered by Yves Younan.
Pidgin is a universal chat client that is used on millions of systems worldwide. The Pidgin chat client enables you to communicate on multiple chat networks simultaneously. Talos has identified multiple vulnerabilities in the way Pidgin handles the MXit protocol. These vulnerabilities fall into the following four categories.
- Information Leakage
- Denial Of Service
- Directory Traversal
- Buffer Overflow
The following vulnerabilities were identified (listed numerically by CVE):
CVE-2016-2365 - Pidgin MXIT Markup Command Denial of Service Vulnerability
CVE-2016-2366 - Pidgin MXIT Table Command Denial of Service Vulnerability
CVE-2016-2367 - Pidgin MXIT Avatar Length Memory Disclosure Vulnerability
CVE-2016-2368 - Pidgin MXIT g_sn
Bugzilla
CVE-2016-2374 pidgin: MXIT MultiMX Message Code Execution Vulnerability
bugzilla·2016-06-22·CVSS 8.1
CVE-2016-2374 [HIGH] CVE-2016-2374 pidgin: MXIT MultiMX Message Code Execution Vulnerability
CVE-2016-2374 pidgin: MXIT MultiMX Message Code Execution Vulnerability
An exploitable memory corruption vulnerability exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT MultiMX message sent via the server can result in an out-of-bounds write leading to memory disclosure and code execution.
External references:
http://www.talosintel.com/reports/TALOS-2016-0142/
http://www.pidgin.im/news/security/?id=107
Upstream fixes:
https://bitbucket.org/pidgin/main/commits/f6c08d962618
http://www.debian.org/security/2016/dsa-3620http://www.pidgin.im/news/security/?id=107http://www.securityfocus.com/bid/91335http://www.talosintelligence.com/reports/TALOS-2016-0142/http://www.ubuntu.com/usn/USN-3031-1https://security.gentoo.org/glsa/201701-38http://www.debian.org/security/2016/dsa-3620http://www.pidgin.im/news/security/?id=107http://www.securityfocus.com/bid/91335http://www.talosintelligence.com/reports/TALOS-2016-0142/http://www.ubuntu.com/usn/USN-3031-1https://security.gentoo.org/glsa/201701-38
2017-01-06
Published