bitlbee: account hijack
| Package(s): | bitlbee | CVE #(s): | CVE-2008-3920 CVE-2008-3969 | ||||||||||||||||||||
| Created: | September 5, 2008 | Updated: | September 24, 2008 | ||||||||||||||||||||
| Description: | Upstream released Bitlbee 1.2.2 with the following changes to the former release: - Security bugfix: It was possible to hijack accounts (without gaining access to the old account, it's simply an overwrite) - Some more stability improvements. The 1.2.3 release "completes" the fix for thsese problems. | ||||||||||||||||||||||
| Alerts: |
| ||||||||||||||||||||||
