pidgin 1:2.10.0-0ubuntu2.2 source package in Ubuntu

Changelog

pidgin (1:2.10.0-0ubuntu2.2) oneiric-security; urgency=low

  * SECURITY UPDATE: file overwrite via MXit crafted pathname
    - debian/patches/CVE-2013-0271.patch: properly escape filenames in
      libpurple/protocols/mxit/formcmds.c,
      libpurple/protocols/mxit/splashscreen.c.
    - CVE-2013-0271
  * SECURITY UPDATE: arbitrary code execution via long HTTP header in MXit
    - debian/patches/CVE-2013-0272.patch: properly check lengths in
      libpurple/protocols/mxit/http.c.
    - CVE-2013-0272
  * SECURITY UPDATE: denial of service via long user ID in Sametime
    - debian/patches/CVE-2013-0273.patch: use g_strlcpy in
      libpurple/protocols/sametime/sametime.c.
    - CVE-2013-0273
  * SECURITY UPDATE: denial of service via long UPnP responses
    - debian/patches/CVE-2013-0274.patch: use g_strlcpy in libpurple/upnp.c.
    - CVE-2013-0274
 -- Marc Deslauriers <email address hidden>   Thu, 21 Feb 2013 12:54:47 -0500

Upload details

Uploaded by:
Marc Deslauriers on 2013-02-21
Uploaded to:
Oneiric
Original maintainer:
Ubuntu Developers
Architectures:
any
Section:
net
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
pidgin_2.10.0.orig.tar.bz2 9.5 MiB f31f6a32c03e870a1774c827b8cee47ae8edd2c1ba8db98e8d58d9911cbaafcd
pidgin_2.10.0-0ubuntu2.2.debian.tar.gz 75.0 KiB 2c914a83add896e12b54c4e3fbba1d39a159fb9de9865faceaa00841dedb0eec
pidgin_2.10.0-0ubuntu2.2.dsc 2.6 KiB 43989d3ddfd9cc9f675258705004f8d81c5c4ba978caf2d5feb04d80f4db93e9

View changes file

Binary packages built by this source

finch: No summary available for finch in ubuntu oneiric.

No description available for finch in ubuntu oneiric.

finch-dev: No summary available for finch-dev in ubuntu oneiric.

No description available for finch-dev in ubuntu oneiric.

libpurple-bin: No summary available for libpurple-bin in ubuntu oneiric.

No description available for libpurple-bin in ubuntu oneiric.

libpurple-dev: No summary available for libpurple-dev in ubuntu oneiric.

No description available for libpurple-dev in ubuntu oneiric.

libpurple0: No summary available for libpurple0 in ubuntu oneiric.

No description available for libpurple0 in ubuntu oneiric.

pidgin: No summary available for pidgin in ubuntu oneiric.

No description available for pidgin in ubuntu oneiric.

pidgin-data: No summary available for pidgin-data in ubuntu oneiric.

No description available for pidgin-data in ubuntu oneiric.

pidgin-dbg: No summary available for pidgin-dbg in ubuntu oneiric.

No description available for pidgin-dbg in ubuntu oneiric.

pidgin-dev: No summary available for pidgin-dev in ubuntu oneiric.

No description available for pidgin-dev in ubuntu oneiric.