Alerts This Week
Warning Icon 1 677
Alerts This Week
Warning Icon 1 677

Fedora 28: Security Update for pidgin-sipe and Critical FreeRDP Fix

fedora
Calendar Grey April 4, 2019
Dist Fedora Esm H88
Essential security enhancement for pidgin-sipe tackles FreeRDP vulnerabilities to bolster system resilience and efficiency.
FreeRDP fix for CVE-2018-1000852, Remmina bugfix update and rebuilds for updated FreeRDP.

Summary

A third-party plugin for the Pidgin multi-protocol instant messenger.

It implements the extended version of SIP/SIMPLE used by various products:

* Skype for Business

* Microsoft Office 365

* Microsoft Business Productivity Online Suite (BPOS)

* Microsoft Lync Server

* Microsoft Office Communications Server (OCS 2007/2007 R2)

* Microsoft Live Communications Server (LCS 2003/2005)

With this plugin you should be able to replace your Microsoft Office

Communicator client with Pidgin.

This package provides the icon set for Pidgin.

FreeRDP fix for CVE-2018-1000852, Remmina bugfix update and rebuilds for updated

FreeRDP.

* Thu Feb 28 2019 Simone Caronni - 1.24.0-3

- Rebuild for FreeRDP update.

* Sat Feb 2 2019 Fedora Release Engineering - 1.24.0-2

- Rebuilt for https://fedoraproject.org/wiki/Fedora_30_Mass_Rebuild

* Sat Nov 10 2018 Stefan Becker - 1.24.0-1

- update to 1.24.0:

- add support for Application Sharing Server

- use user agent also for HTTP

- add support for new AppStream metadata file location

- add BR appstream & freerdp-shadow2

* Mon Aug 20 2018 Stefan Becker - 1.23.3-1

- update to 1.23.3:

- various bug fixes

- drop obsolete patch for Remmina v1.2.0 rcgit.27 fix

* Fri Jul 13 2018 Fedora Release Engineering - 1.23.2-3

- Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild

* Wed Jun 27 2018 Stefan Becker - 1.23.2-2

- add upstream patch for Remmina v1.2.0 rcgit.27 (bz #1594900)

[ 1 ] Bug #1635839 - [abrt] vinagre: init_freerdp(): vinagre killed by SIGSEGV

https://bugzilla.redhat.com/show_bug.cgi?id=1635839

[ 2 ] Bug #1655205 - [abrt] vinagre: init_freerdp(): vinagre killed by SIGSEGV

https://bugzilla.redhat.com/show_bug.cgi?id=1655205

[ 3 ] Bug #1677320 - Cannot connect to xrdp server

https://bugzilla.redhat.com/show_bug.cgi?id=1677320

[ 4 ] Bug #1684154 - CVE-2018-8786 freerdp: Integer truncation leading to heap-based buffer overflow in update_read_bitmap_update() function [fedora-all]

https://bugzilla.redhat.com/show_bug.cgi?id=1684154

[ 5 ] Bug #1661642 - CVE-2018-1000852 freerdp: out of bounds read in drdynvc_process_capability_request [fedora-28]

https://bugzilla.redhat.com/show_bug.cgi?id=1661642

[ 6 ] Bug #1665682 - [abrt] remmina: poll_for_event(): remmina killed by SIGABRT

https://bugzilla.redhat.com/show_bug.cgi?id=1665682

[ 7 ] Bug #1660515 - Remmina NX plugin no longer works

https://bugzilla.redhat.com/show_bug.cgi?id=1660515

[ 8 ] Bug #1667632 - remmina-1.3.3 is available

https://bugzilla.redhat.com/show_bug.cgi?id=1667632

su -c 'dnf upgrade --advisory FEDORA-2019-b2d986c3e9' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/

List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Change Log

References

Update Instructions

Severity
critical
Lowest
Low
Medium
High
Critical

Product: Fedora 28
Version: 1.24.0
Release: 3.fc28
Summary: Pidgin protocol plugin to connect to MS Office Communicator

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here