LWN.net Logo

pidgin: denial of service

Package(s):pidgin CVE #(s):CVE-2011-4601
Created:December 12, 2011 Updated:January 9, 2012
Description: From the Mandriva advisory:

When receiving various messages related to requesting or receiving authorization for adding a buddy to a buddy list, the oscar protocol plugin failed to validate that a piece of text was UTF-8. In some cases invalid UTF-8 data would lead to a crash.

Alerts:
CentOS CESA-2011:1821 2011-12-22
Oracle ELSA-2011-1821 2011-12-17
Scientific Linux SL-pidg-20111214 2011-12-14
Scientific Linux SL-pidg-20111214 2011-12-14
Oracle ELSA-2011-1820 2011-12-14
CentOS CESA-2011:1820 2011-12-14
CentOS CESA-2011:1820 2011-12-14
Red Hat RHSA-2011:1821-01 2011-12-14
Red Hat RHSA-2011:1820-01 2011-12-14
Mandriva MDVSA-2011:183 2011-12-10
Fedora FEDORA-2011-17558 2011-12-30
Fedora FEDORA-2011-17546 2011-12-30
openSUSE openSUSE-SU-2012:0066-1 2012-01-09
Ubuntu USN-1500-1 2012-07-09

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds