Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

Zenwalk: 2021-045-03 Important: Pidgin Security Flaw Exploit

slackware
Calendar Grey June 28, 2011
Dist Slackware Esm H88
Updated pidgin modules for Slackware address critical remote DoS vulnerabilities and include vital security patches along with detailed setup guidance.
New pidgin packages are available for Slackware 12.2, 13.0, 13.1, 13.37, and -current to fix a security issue

Summary

Here are the details from the Slackware 13.37 ChangeLog: patches/packages/pidgin-2.9.0-i486-1_slack13.37.txz: Upgraded. Fixed a remote denial of service. A remote attacker could set a specially crafted GIF file as their buddy icon causing vulerable versions of pidgin to crash due to excessive memory use. For more information, see: https://www.cve.org/CVERecord?id=CVE-2011-2485 (* Security fix *)

Where Find New Packages

Thanks to the friendly folks at the OSU Open Source Lab (https://osuosl.org/) for donating FTP and rsync hosting to the Slackware project! :-)
Also see the "Get Slack" section on http://www.slackware.com/ for additional mirror sites near you.
Updated package for Slackware 12.2:
Updated package for Slackware 13.0:
Updated package for Slackware x86_64 13.0:
Updated package for Slackware 13.1:
Updated package for Slackware x86_64 13.1:
Updated package for Slackware 13.37:
Updated package for Slackware x86_64 13.37:
Updated package for Slackware -current:
Updated package for Slackware x86_64 -current:

MD5 Signatures

Slackware 12.2 package: fc1a92d8fcce2b11d3eea747255aadd5 pidgin-2.9.0-i486-1_slack12.2.tgz
Slackware 13.0 package: 4523a538f5c1f6dbc267a05c3f0c3d39 pidgin-2.9.0-i486-1_slack13.0.txz
Slackware x86_64 13.0 package: b10d74b33d814f41bb3e7e3a65013d83 pidgin-2.9.0-x86_64-1_slack13.0.txz
Slackware 13.1 package: 815fe39274fea0b7618dee8465be5b09 pidgin-2.9.0-i486-1_slack13.1.txz
Slackware x86_64 13.1 package: e7d6da493c76f3898c25590d4ec09490 pidgin-2.9.0-x86_64-1_slack13.1.txz
Slackware 13.37 package: 276ab5a94fad246d9120c33a396fb484 pidgin-2.9.0-i486-1_slack13.37.txz
Slackware x86_64 13.37 package: 6625960c550a8ee6373abb5338c25818 pidgin-2.9.0-x86_64-1_slack13.37.txz
Slackware -current package: 517f9f04054fd5ce1df1e63b5b12811f xap/pidgin-2.9.0-i486-1.txz
Slackware x86_64 -current package: 98d49d72f76fae74eee558a8173ef98a xap/pidgin-2.9.0-x86_64-1.txz

Severity
important
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Installation Instructions

Installation instructions: Upgrade the package as root: # upgradepkg pidgin-2.9.0-i486-1_slack13.37.txz

Related News

Your message here