Buffer overflow in markup.c in the MXit protocol plugin in libpurple in Pidgin before 2.10.5 allows remote attackers to execute arbitrary code via a crafted inline image in a message.
hg.pidgin.im/pidgin/main/rev/ded93865ef42
lists.opensuse.org/opensuse-security-announce/2012-07/msg00009.html
rhn.redhat.com/errata/RHSA-2012-1102.html
secunia.com/advisories/50005
www.mandriva.com/security/advisories?name=MDVSA-2012:105
www.pidgin.im/news/security/index.php?id=64
oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A17678