Pidgin was updated to 2.10.7 to fix various security issues
and the bug that IRC did not work at all in 12.3.
Changes:
- Add pidgin-irc-sasl.patch: link irc module to SASL.
Allows the IRC module to be loaded (bnc#806975).
- Update to version 2.10.7 (bnc#804742):
+ Alien hatchery:
- No changes
+ General:
- The configure script will now exit with status 1 when
specifying invalid protocol plugins using the
--with-static-prpls and --with-dynamic-prpls
arguments. (pidgin.im#15316)
+ libpurple:
- Fix a crash when receiving UPnP responses with
abnormally long values. (CVE-2013-0274)
- Don't link directly to libgcrypt when building with
GnuTLS support. (pidgin.im#15329)
- Fix UPnP mappings on routers that return empty
- Tcl plugin uses saner, race-free plugin loading.
- Fix the Tcl signals-test plugin for
savedstatus-changed. (pidgin.im#15443)
+ Pidgin:
- Make Pidgin...
Read the Full AdvisoryPatch Instructions:
To install this openSUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:
- openSUSE 12.3:
zypper in -t patch openSUSE-2013-231
To bring your system up-to-date, use "zypper patch".
- openSUSE 12.3 (i586 x86_64):
finch-2.10.7-4.4.1
finch-debuginfo-2.10.7-4.4.1
finch-devel-2.10.7-4.4.1
libpurple-2.10.7-4.4.1
libpurple-debuginfo-2.10.7-4.4.1
libpurple-devel-2.10.7-4.4.1
libpurple-meanwhile-2.10.7-4.4.1
libpurple-meanwhile-debuginfo-2.10.7-4.4.1
libpurple-tcl-2.10.7-4.4.1
libpurple-tcl-debuginfo-2.10.7-4.4.1
pidgin-2.10.7-4.4.1
pidgin-debuginfo-2.10.7-4.4.1
pidgin-debugsource-2.10.7-4.4.1
pidgin-devel-2.10.7-4.4.1
- openSUSE 12.3 (noarch):
libpurple-branding-upstream-2.10.7-4.4.1
libpurple-lang-2.10.7-4.4.1
https://www.suse.com/security/cve/CVE-2013-0271.html
https://www.suse.com/security/cve/CVE-2013-0272.html
https://www.suse.com/security/cve/CVE-2013-0273.html
https://www.suse.com/security/cve/CVE-2013-0274.html
Get the latest Linux and open source security news straight to your inbox.