PCLinuxOS-Forums
News: Wishing everyone a Happy 2012
 
*
Welcome, Guest. Please login or register. February 11, 2012, 02:00:28 AM


Login with username, password and session length


Pages: [1]   Go Down
  Print  
Author Topic: Security Update: pidgin-2.7.3-1  (Read 267 times)
Texstar
Administrator
Super Villain
*****
Offline Offline

Posts: 11861



« on: August 15, 2010, 06:07:01 PM »

Summary
=======

A flaw has been fixed in Pidgin, which can allow  remote  attackers  to
cause denial of service via X-Status message.


Description
===========

CVE-2010-2528:

The clientautoresp function in  family_icbm.c  in  the  oscar  protocol
plugin in libpurple in Pidgin before 2.7.2 allows remote  authenticated
users to cause a  denial  of  service  (NULL  pointer  dereference  and
application crash) via an X-Status message that lacks the expected  end
tag for a (1) desc or (2) title element.


This package will part of your Synaptic Package Manager updates.
Logged

Follow the development of PCLinuxOS on Twitter
Help fund the PCLinuxOS project!

"I'm not so good on advice, can I interest you in a sarcastic reply?"
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.16 | SMF © 2011, Simple Machines

Valid XHTML 1.0! Valid CSS! Dilber MC Theme by HarzeM