Description:Application crash on user not on the target's buddy list sending a "nudge," a feature of the MSN protocol.
Affected:PIDGIN : pidgin 2.2
CVE:CVE-2007-4996 (libpurple in Pidgin before 2.2.1 does not properly handle MSN nudge messages from users who are not on the receiver's buddy list, which allows remote attackers to cause a denial of service (crash) via a nudge message that triggers an access of "an invalid memory location.")
FORESIGHT, FLEA-2007-0057-1 pidgin (04.10.2007)

