Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Fedora 9: FEDORA-2009-2295 Moderate DoS Threat Fix for Psi

fedora
Calendar Grey March 4, 2009
Dist Fedora Esm H88
This security-enhancement update for Fedora 9 resolves a vulnerability in psi, improving overall messaging reliability.
This is a security-bugfix-only update to version 0.12.1 fixing a DOS vulnerability.

Summary

Psi is the premiere Instant Messaging application designed for Microsoft

Windows, Apple Mac OS X and GNU/Linux. Built upon an open protocol named

Jabber, Psi is a fast and lightweight messaging client that utilises the best

in open source technologies. Psi contains all the features necessary to chat,

with no bloated extras that slow your computer down. The Jabber protocol

provides gateways to other protocols as AIM, ICQ, MSN and Yahoo!.

If you want SSL support, install the qca-tls package.

This is a security-bugfix-only update to version 0.12.1 fixing a DOS

vulnerability. New in 0.12.1 - Bugfix for DOS vulnerability in the file

transfer code. Thanks to Jesus Olmos (jolmos@isecauditors.com)

* Tue Mar 3 2009 Sven Lankes 0.12.1-1

- version 0.12.1

* Wed Aug 13 2008 Aurelien Bompard 0.12-1

- version 0.12

* Wed May 21 2008 Tom "spot" Callaway 0.11-5

- fix license tag

[ 1 ] Bug #488301 - CVE-2008-6393 psi: remote DoS vulnerability [F9]

https://bugzilla.redhat.com/show_bug.cgi?id=488301

su -c 'yum update psi' at the command line.

For more information, refer to "Managing Software with yum",

available at .

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

Fedora-package-announce mailing list

Fedora-package-announce@redhat.com

https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Change Log

References

Update Instructions

Severity
important
Lowest
Low
Medium
High
Critical

Product: Fedora 9
Version: 0.12.1
Release: 1.fc9
URL:
Summary: Jabber client based on Qt

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here