CVE-2009-1889

Source
https://cve.org/CVERecord?id=CVE-2009-1889
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2009-1889.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2009-1889
Downstream
Published
2009-07-01T13:00:01Z
Modified
2026-04-10T03:40:47.676947Z
Summary
[none]
Details

The OSCAR protocol implementation in Pidgin before 2.5.8 misinterprets the ICQWebMessage message type as the ICQSMS message type, which allows remote attackers to cause a denial of service (application crash) via a crafted ICQ web message that triggers allocation of a large amount of memory.

References

Affected packages