LWN.net Logo

pidgin: multiple vulnerabilities

Package(s):pidgin CVE #(s):CVE-2012-2214 CVE-2012-2318
Created:May 29, 2012 Updated:March 15, 2013
Description: From the Mandriva advisory:

Multiple vulnerabilities have been discovered and corrected in pidgin:

A series of specially crafted file transfer requests can cause clients to reference invalid memory. The user must have accepted one of the file transfer requests (CVE-2012-2214).

Incoming messages with certain characters or character encodings can cause clients to crash (CVE-2012-2318).

Alerts:
Mandriva MDVSA-2012:082 2012-05-28
Fedora FEDORA-2012-8687 2012-06-03
Fedora FEDORA-2012-8686 2012-06-10
Fedora FEDORA-2012-8669 2012-06-10
SUSE SUSE-SU-2012:0782-1 2012-06-22
Ubuntu USN-1500-1 2012-07-09
openSUSE openSUSE-SU-2012:0866-1 2012-07-11
Red Hat RHSA-2012:1102-01 2012-07-19
CentOS CESA-2012:1102 2012-07-19
CentOS CESA-2012:1102 2012-07-19
Oracle ELSA-2012-1102 2012-07-20
Scientific Linux SL-pidg-20120719 2012-07-19
Oracle ELSA-2013-0646 2013-03-14

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds