security review and patches for libpurple

Ethan Blanton elb at pidgin.im
Mon Jul 18 12:14:43 EDT 2011


Jacob Appelbaum spake unto us the following wisdom:
> > With that in mind, I'd like to ask again if there are any objections
> > to my committing these patches to ipp without embargo or a coordinated
> > release.  If not, I will land them some time tomorrow.  If anyone even
> > simply thinks we should wait a few days or get additional input before
> > landing them, that's fine, too.
> 
> I would really strongly encourage you to co-ordinate with the Adium
> folks. It seems to me that they're behind on libpurple updates and any
> new security releases that don't go into Adium may cause Mac OS X users
> major trouble.

I appreciate that input.  There are several Adium developers on the
security at pidgin.im contact list, so they are in the loop on this.

Ethan
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 482 bytes
Desc: Digital signature
URL: <http://pidgin.im/cgi-bin/mailman/private/security/attachments/20110718/fa97b53b/attachment.pgp>


More information about the security mailing list