Vulnerability Bulletins

DSA-3806 pidgin - security update

   
Affected software Debian
 
It was discovered a vulnerability in Pidgin, a multi-protocol instantmessaging client. A server controlled by an attacker can send an invalidXML that can trigger an out-of-bound memory access. This might lead to acrash or, in some extreme cases, to remote code execution in theclient-side.

More info:

https://www.debian.org/security/2017/dsa-3806