Talos Security Advisory for Pidgin

Ethan Blanton elb at pidgin.im
Mon Jun 6 15:09:41 EDT 2016


Regina Wilson -T (regiwils - ETTAIN GROUP INC at Cisco) spake unto us the following wisdom:
> As we are approaching the 60 day mark next week (Jun 14th), I wanted
> to follow up with you on any new developments.  Do you have a
> date/timeline for the disclosure release?

We have actually been working on this fast and furious this past
weekend and today.  We have patches for all of the vulnerabilities and
they are in review at the moment.  We have one other vulnerability to
coordinate as well, which requires some more work.  We are hoping to
get patches out to packagers in the next day or two; we would like to
give them at least one week to coordinate their package releases.

We're shooting to meet the 60-day window, but if it's possible to slip
a few days if packagers ask for more time, we would appreciate it --
we had hoped to give them more heads up than this.

Ethan


More information about the security mailing list