Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

CVE-2014-3697

Published: 29 October 2014

Absolute path traversal vulnerability in the untar_block function in win32/untar.c in Pidgin before 2.10.10 on Windows allows remote attackers to write to arbitrary files via a drive name in a tar archive of a smiley theme.

Notes

AuthorNote
jdstrand
Windows only

Priority

Negligible

Status

Package Release Status
pidgin
Launchpad, Ubuntu, Debian
lucid Ignored
(end of life)
precise Not vulnerable

trusty Not vulnerable

upstream Needs triage

utopic Not vulnerable