An out-of-bounds write flaw was found in the way Pidgin before 2.12.0 processed XML content. A malicious remote server could potentially use this flaw to crash Pidgin or execute arbitrary code in the context of the pidgin process.
Advisories
Source ID Title
Debian DLA Debian DLA DLA-853-1 pidgin security update
Debian DSA Debian DSA DSA-3806-1 pidgin security update
EUVD EUVD EUVD-2017-11800 An out-of-bounds write flaw was found in the way Pidgin before 2.12.0 processed XML content. A malicious remote server could potentially use this flaw to crash Pidgin or execute arbitrary code in the context of the pidgin process.
Ubuntu USN Ubuntu USN USN-3231-1 Pidgin vulnerability
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Sun, 13 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.0097}

epss

{'score': 0.00769}


cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2024-08-05T14:02:07.253Z

Reserved: 2016-12-01T00:00:00

Link: CVE-2017-2640

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-07-27T18:29:00.970

Modified: 2024-11-21T03:23:53.367

Link: CVE-2017-2640

cve-icon Redhat

Severity : Moderate

Publid Date: 2017-03-10T00:00:00Z

Links: CVE-2017-2640 - Bugzilla

cve-icon OpenCVE Enrichment

No data.