CVE-2019-25544
Severity CVSS v4.0:
MEDIUM
Type:
Unavailable / Other
Publication date:
21/03/2026
Last modified:
21/03/2026
Description
Pidgin 2.13.0 contains a denial of service vulnerability that allows local attackers to crash the application by providing an excessively long username string during account creation. Attackers can input a buffer of 1000 characters in the username field and trigger a crash when joining a chat, causing the application to become unavailable.
Impact
Base Score 4.0
6.90
Severity 4.0
MEDIUM
Base Score 3.x
6.20
Severity 3.x
MEDIUM



