title: cve-2014-0020-00
date: 2014-01-28T00:00:00.000Z
cveNumber: cve-2014-0020
summary: Remotely triggerable crash in IRC argument parsing
discoveredBy: Daniel Atallah
fixedInRelease: 2.10.8
type: security
layout: cve
hidden: true
### Description
A malicious server or man-in-the-middle could trigger a crash in libpurple by
sending a message with fewer than expected arguments.
### Mitigation
Verify that incoming messages contain the appropriate number of arguments before
handling them.