Alerts This Week
Warning Icon 1 1,149
Alerts This Week
Warning Icon 1 1,149

Fedora Core 3: FEDORA-2005-750 Moderate: Gaim Buffer Overflow

fedora
Calendar Grey August 18, 2005
Dist Fedora Esm H88
Fedora Core 3 has released an update for gaim, now at version 1.5.0, which tackles several security vulnerabilities, such as memory misalignment and buffer overflow risks.
Updated package.

Summary

Gaim is a clone of America Online's Instant Messenger client. It

features nearly all of the functionality of the official AIM client

while also being smaller, faster, and commercial-free.

Please see the Changelog details and security information at

the upstream Gaim Project site.

- 1.5.0 security and bug fixes

CAN-2005-2370 Gadu-Gadu memory alignment bug

CAN-2005-2102 AIM/ICQ non-UTF-8 Filename Crash

CAN-2005-2103 AIM/ICQ away message buffer overflow

* Tue Aug 9 2005 Jeremy Katz - 1:1.4.0-7

- rebuild for new evolution-data-server

* Mon Aug 1 2005 Warren Togami 1:1.4.0-6

- FC5+ bash regex replace for -fstack-protector-all (mharris)

* Sun Jul 31 2005 Warren Togami 1:1.4.0-5

- FC5+ automatic -fstack-protector-all switch

- 150: MSN buddy names with space disconnect and profile corruption

(supercedes patch 149)

- 151: Gadu Gadu memory alignment crash

- 152: Rename Group Merge crash

- 153: mailto: parse crash (util.c)

- 154: mailto: parse crash (MSN)

- 155: mailto: parse crash (Zephyr)

709dfeddc2b8ae02448478518ad6579c SRPMS/gaim-1.5.0-1.fc3.src.rpm

788f4fe7561131aaf406c8bb7a473e50 x86_64/gaim-1.5.0-1.fc3.x86_64.rpm

17ac20c2e95577cbe268bff717d08bcc x86_64/debug/gaim-debuginfo-1.5.0-1.fc3.x86_64.rpm

d22007b8bf36278a4511ccb164f91de1 i386/gaim-1.5.0-1.fc3.i386.rpm

7ae413d0f5b18409f64f63887574f748 i386/debug/gaim-debuginfo-1.5.0-1.fc3.i386.rpm

This update can also be installed with the Update Agent; you can

launch the Update Agent with the 'up2date' command.

fedora-announce-list@redhat.com

Change Log

References

Update Instructions

Name: gaim
Version: 1.5.0
Release: 1.fc3
Summary: A GTK+ clone of the AOL Instant Messenger client.

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here