Upcoming Pidgin security disclosures and 2.10.1

Jan Lieskovsky jlieskov at redhat.com
Sun Dec 11 07:58:43 EST 2011


On 12/11/2011 01:42 AM, Mark Doliner wrote:
> On Sat, Dec 10, 2011 at 12:49 PM, Jan Lieskovsky<jlieskov at redhat.com>  wrote:
>> Please use the CVE-2011-4602 identifier for the XMPP / Jabber Jingle
>> stanza multiple NULL ptr dereference flaws issue.
> ...
>> Please use CVE-2011-4603 identifier for the SILC channel messages issue.
>
> Thank you, I've updated our website accordingly.
>
> Old SILC crash - CVE-2011-3594 - http://pidgin.im/news/security/?id=56
> AIM/ICQ crash - CVE-2011-4601 - http://pidgin.im/news/security/?id=57
> XMPP Jingle crash - CVE-2011-4602 - http://pidgin.im/news/security/?id=58
> New SILC crash - CVE-2011-4603 - http://pidgin.im/news/security/?id=59

Thanks, Mark. They look fine.

Regards, Jan.
--
Jan iankko Lieskovsky / Red Hat Security Response Team



More information about the Packagers mailing list