{"id":"CVE-2011-4922","details":"cipher.c in the Cipher API in libpurple in Pidgin before 2.7.10 retains encryption-key data in process memory, which might allow local users to obtain sensitive information by reading a core file or other representation of memory contents.","modified":"2026-04-10T03:42:07.583522Z","published":"2012-08-08T10:26:18Z","references":[{"type":"ADVISORY","url":"http://www.pidgin.im/news/security/?id=50"},{"type":"EVIDENCE","url":"http://hg.pidgin.im/pidgin/main/rev/8c850977cb42"},{"type":"FIX","url":"http://hg.pidgin.im/pidgin/main/rev/8c850977cb42"},{"type":"WEB","url":"http://openwall.com/lists/oss-security/2012/01/04/13"},{"type":"WEB","url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A18223"}],"schema_version":"1.7.5"}