RHSA-2010:0044-01 -- Redhat pidgin and finchID: oval:org.secpod.oval:def:500377 | Date: (C)2012-01-31 (M)2024-01-29 |
Class: PATCH | Family: unix |
Pidgin is an instant messaging program which can log in to multiple accounts on multiple instant messaging networks simultaneously. A directory traversal flaw was discovered in Pidgin"s MSN protocol implementation. A remote attacker could send a specially-crafted emoticon image download request that would cause Pidgin to disclose an arbitrary file readable to the user running Pidgin. These packages upgrade Pidgin to version 2.6.5. Pidgin must be restarted for this update to take effect.
Platform: |
Red Hat Enterprise Linux 5 |
Red Hat Enterprise Linux 4 |