Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Debian DSA-4524-1: Critical Security Update for Dino IM Client

debian
Calendar Grey September 16, 2019
Debian Logo
The Dino XMPP client presents security vulnerabilities affecting contact management and message integrity, requiring urgent mitigation for improved user safety
Multiple vulnerabilities have been discovered in the Dino XMPP client, which could allow spoofing message, manipulation of a user's roster (contact list) and unauthorised sending o...

Summary

Multiple vulnerabilities have been discovered in the Dino XMPP client,
which could allow spoofing message, manipulation of a user's roster
(contact list) and unauthorised sending of message carbons.

For the stable distribution (buster), these problems have been fixed in
version 0.0.git20181129-1+deb10u1.

We recommend that you upgrade your dino-im packages.

For the detailed security status of dino-im please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/source-package/dino-im

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Severity
critical
Lowest
Low
Medium
High
Critical

Package: dino-im
CVE ID: CVE-2019-16235 CVE-2019-16236 CVE-2019-16237

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here