Loading
The jabber_idn_validate function in jutil.c in the Jabber protocol plugin in libpurple in Pidgin before 2.10.10 allows remote attackers to obtain sensitive information from process memory via a crafted XMPP message.
Cite this page
CVE-2014-3698. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2014-3698
Use CWE-200, Pidgin vendor hub and Pidgin product page to widen CVE-2014-3698 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2016-1000030, CVE-2016-2378 and CVE-2016-2377 for nearby disclosures in the same product family.