CVE-2012-1257: Medium severity pidgin vulnerability
Published Nov 20, 2019
·Updated
Pidgin 2.10.0 uses DBUS for certain cleartext communication, which allows local users to obtain sensitive information via a dbus session monitor.
Affected Software
1 affected component
Pidgin Pidgin=2.10.0
Event History
Nov 20, 2019
CVE Published
via MITRE·07:31 PM
Data Sourced
via MITRE·07:31 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2012-1257.
2
What is the severity of CVE-2012-1257?
The severity of CVE-2012-1257 is medium (5.5).
3
What software is affected by CVE-2012-1257?
Pidgin 2.10.0 is affected by CVE-2012-1257.
4
How can local users exploit CVE-2012-1257?
Local users can exploit CVE-2012-1257 by using a dbus session monitor to obtain sensitive information.
5
Are there any references for CVE-2012-1257?
Yes, you can find references for CVE-2012-1257 at the following links: [http://developer.pidgin.im/ticket/14830](http://developer.pidgin.im/ticket/14830) and [http://pidgin.im/pipermail/devel/2011-December/010521.html](http://pidgin.im/pipermail/devel/2011-December/010521.html).