CVE
- Id
- 91142
- CVE No.
- CVE-2016-4323
- Status
- Candidate
- Description
- A directory traversal exists in the handling of the MXIT protocol in Pidgin. Specially crafted MXIT data sent from the server could potentially result in an overwrite of files. A malicious server or someone with access to the network traffic can provide an invalid filename for a splash image triggering the vulnerability.
- Phase
- Assigned (20160427)
- Votes
- None (candidate not yet proposed)
- Comments