Upcoming Pidgin security disclosures and 2.10.1

Mark Doliner mark at kingant.net
Sat Dec 10 19:42:25 EST 2011


On Sat, Dec 10, 2011 at 12:49 PM, Jan Lieskovsky <jlieskov at redhat.com> wrote:
> Please use the CVE-2011-4602 identifier for the XMPP / Jabber Jingle
> stanza multiple NULL ptr dereference flaws issue.
...
> Please use CVE-2011-4603 identifier for the SILC channel messages issue.

Thank you, I've updated our website accordingly.

Old SILC crash - CVE-2011-3594 - http://pidgin.im/news/security/?id=56
AIM/ICQ crash - CVE-2011-4601 - http://pidgin.im/news/security/?id=57
XMPP Jingle crash - CVE-2011-4602 - http://pidgin.im/news/security/?id=58
New SILC crash - CVE-2011-4603 - http://pidgin.im/news/security/?id=59



More information about the Packagers mailing list