CVE-2014-3775: Libgadu

High severity, CVSS 7.5. EPSS: 3.8% chance of exploitation in the next 30 days.

libgadu before 1.11.4 and 1.12.0 before 1.12.0-rc3, as used in Pidgin and other products, allows remote Gadu-Gadu file relay servers to cause a denial of service (memory overwrite) or possibly execute arbitrary code via a crafted message.

Affected products

  • Libgadu Libgadu: up to and including 1.11.4; version 1.12.0 only

Published 2014-05-22. Last modified 2026-06-17.