Описание
ELSA-2012-1102: pidgin security update (MODERATE)
[2.7.9-5.el6.2]
- Add patch for CVE-2011-2485 (RH bug #837561).
[2.7.9-5.el6.1]
- Add patch for CVE-2012-1178 (RH bug #837560).
- Add patch for CVE-2012-2318 (RH bug #837560).
- Add patch for CVE-2012-3374 (RH bug #837560).
[2.7.9-5.el6]
- Add patch for CVE-2011-4602 (RH bug #766453).
[2.7.9-4.el6]
- Add patch for CVE-2011-4601 (RH bug #766453).
Обновленные пакеты
Oracle Linux 6
Oracle Linux x86_64
finch
2.7.9-5.el6.2
finch-devel
2.7.9-5.el6.2
libpurple
2.7.9-5.el6.2
libpurple-devel
2.7.9-5.el6.2
libpurple-perl
2.7.9-5.el6.2
libpurple-tcl
2.7.9-5.el6.2
pidgin
2.7.9-5.el6.2
pidgin-devel
2.7.9-5.el6.2
pidgin-docs
2.7.9-5.el6.2
pidgin-perl
2.7.9-5.el6.2
Oracle Linux i686
finch
2.7.9-5.el6.2
finch-devel
2.7.9-5.el6.2
libpurple
2.7.9-5.el6.2
libpurple-devel
2.7.9-5.el6.2
libpurple-perl
2.7.9-5.el6.2
libpurple-tcl
2.7.9-5.el6.2
pidgin
2.7.9-5.el6.2
pidgin-devel
2.7.9-5.el6.2
pidgin-docs
2.7.9-5.el6.2
pidgin-perl
2.7.9-5.el6.2
Связанные CVE
Связанные уязвимости
msg.c in the MSN protocol plugin in libpurple in Pidgin before 2.10.4 does not properly handle crafted characters, which allows remote servers to cause a denial of service (application crash) by placing these characters in a text/plain message.
msg.c in the MSN protocol plugin in libpurple in Pidgin before 2.10.4 does not properly handle crafted characters, which allows remote servers to cause a denial of service (application crash) by placing these characters in a text/plain message.
msg.c in the MSN protocol plugin in libpurple in Pidgin before 2.10.4 does not properly handle crafted characters, which allows remote servers to cause a denial of service (application crash) by placing these characters in a text/plain message.
msg.c in the MSN protocol plugin in libpurple in Pidgin before 2.10.4 ...
Buffer overflow in markup.c in the MXit protocol plugin in libpurple in Pidgin before 2.10.5 allows remote attackers to execute arbitrary code via a crafted inline image in a message.