CVE-2015-8833

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
12/04/2016
Last modified:
12/04/2025

Description

Use-after-free vulnerability in the create_smp_dialog function in gtk-dialog.c in the Off-the-Record Messaging (OTR) pidgin-otr plugin before 4.0.2 for Pidgin allows remote attackers to execute arbitrary code via vectors related to the "Authenticate buddy" menu item.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cypherpunks:pidgin-otr:*:*:*:*:*:*:*:* 4.0.1 (including)