Package: pidgin / 2.7.3-1+squeeze4

Metadata

Package Version Patches format
pidgin 2.7.3-1+squeeze4 3.0 (quilt)

Patch series

view the series file
Patch File delta Description
msn_crash.patch | (download)

libpurple/network.c | 2 0 + 2 - 0 !
1 file changed, 2 deletions(-)

---
python26.patch | (download)

libpurple/purple-remote | 5 3 + 2 - 0 !
1 file changed, 3 insertions(+), 2 deletions(-)

 don't raise a string, since that's incompatible with python 2.6
libnssckbi_path.patch | (download)

libpurple/plugins/ssl/ssl-nss.c | 2 1 + 1 - 0 !
1 file changed, 1 insertion(+), 1 deletion(-)

 fix path to libnssckbi.so
baseXX_decode_error_handling_2.patch | (download)

libpurple/ntlm.c | 11 8 + 3 - 0 !
libpurple/plugins/perl/common/Util.xs | 4 2 + 2 - 0 !
libpurple/protocols/jabber/auth_digest_md5.c | 4 3 + 1 - 0 !
libpurple/protocols/msn/slp.c | 2 1 + 1 - 0 !
libpurple/protocols/myspace/message.c | 2 1 + 1 - 0 !
libpurple/protocols/oscar/clientlogin.c | 2 1 + 1 - 0 !
libpurple/protocols/qq/im.c | 8 5 + 3 - 0 !
libpurple/protocols/yahoo/libymsg.c | 14 8 + 6 - 0 !
8 files changed, 29 insertions(+), 18 deletions(-)

 fixes remote dos in base64 code (cve-2010-3711)
#
# old_revision [e71d42518d6fd45f106f148da376c43e3eb6b294]
#
# patch "pidgin/libpurple/ntlm.c"
#  from [979ce84955ca402858c8ef4fdfb3f786da602d98]
#    to [5e2ea0f873201d1fbfbdf92456e17a24c5e584ab]
# 
# patch "pidgin/libpurple/plugins/perl/common/Util.xs"
#  from [5fba429dad716bc84040920e2431cb52ad0002b9]
#    to [ac3d9ea652a79066c672e262d6f99d5949186a1a]
# 
# patch "pidgin/libpurple/protocols/jabber/auth_digest_md5.c"
#  from [857c4e8e03d05e94a105e5763b7cd8eb5c758cc6]
#    to [c32a82e931b9ae544229e5ec2d1d9d163ea4ef90]
# 
# patch "pidgin/libpurple/protocols/msn/slp.c"
#  from [f8ab7fe26bd4244db9b4299ace03320a7ac8a799]
#    to [25c7706a6a5125495ed1ddbf200d5961578c7beb]
# 
# patch "pidgin/libpurple/protocols/myspace/message.c"
#  from [28bf0b70059bea825c40dd1a643fe2523f8fdd1f]
#    to [ac0c77b3d62b820b3b9a4a74626fa693a8c202ee]
# 
# patch "pidgin/libpurple/protocols/oscar/clientlogin.c"
#  from [582b716f959a2688537c5d581bf74971c8962a10]
#    to [f66d45ff55ef44bed415ddbd25e47f2d60c8d5ea]
# 
# patch "pidgin/libpurple/protocols/qq/im.c"
#  from [99d2868d5c8b67ab905ad128d0603f71af8bba50]
#    to [6464068551bb1b7e76badb77a334719a595ebf71]
# 
# patch "pidgin/libpurple/protocols/yahoo/libymsg.c"
#  from [ede49fc83fb4fba337d5bca27d26fa20595039b8]
#    to [aedcc38fb75b9a99be6cb60666cd72a4e2376158]
#
============================================================
cyrus_sasl_crash.patch | (download)

libpurple/protocols/jabber/auth_cyrus.c | 13 6 + 7 - 0 !
libpurple/protocols/jabber/jabber.c | 2 2 + 0 - 0 !
libpurple/protocols/jabber/jabber.h | 1 1 + 0 - 0 !
3 files changed, 9 insertions(+), 7 deletions(-)

 fix a crash when multiple accounts are simultaneously performing
 SASL authentication when built with Cyrus SASL support.
#
#
# patch "libpurple/protocols/jabber/auth_cyrus.c"
#  from [de85c1d927c318ab37dbaae05f4823749ff6da3b]
#    to [d2bfd74ef5947eedc6fc7b489e53cf43b57f6f41]
# 
# patch "libpurple/protocols/jabber/jabber.c"
#  from [bad7f0bf46ec064f14facd6a467eb06918bb7d27]
#    to [9c1f4dbfa2d4aec4f3eaa4108bf6661902317394]
# 
# patch "libpurple/protocols/jabber/jabber.h"
#  from [480e97195d8da8a1120c4f5cb1360b77c9a3d24b]
#    to [1c6cf16631a65e79ba7fff3147fcbfba98ed7c05]
#
============================================================
CVE 2011 3594.patch | (download)

libpurple/protocols/silc/ops.c | 9 8 + 1 - 0 !
1 file changed, 8 insertions(+), 1 deletion(-)

 fix silc remote crash
#
#
# patch "libpurple/protocols/silc/ops.c"
#  from [30ab18780af11a53b6564a44c4e8ebfc1a296d78]
#    to [80bd9a7d3faf9e5ef28438647159fe19847e9839]
#
============================================================

CVE 2011 4601.patch | (download)

libpurple/protocols/oscar/family_feedbag.c | 115 87 + 28 - 0 !
1 file changed, 87 insertions(+), 28 deletions(-)

 fix aim and icq remote crash
#
#
# patch "libpurple/protocols/oscar/family_feedbag.c"
#  from [8f80e2c5acd2b21acc88d54ba8e5ab43dbdaa3e2]
#    to [ff8702078ba3a5c73ff1c86a206f09f7749c1314]
#
============================================================

CVE 2011 4602.patch | (download)

libpurple/protocols/jabber/jingle/jingle.c | 2 1 + 1 - 0 !
libpurple/protocols/jabber/jingle/rtp.c | 83 63 + 20 - 0 !
libpurple/protocols/jabber/jingle/session.c | 38 23 + 15 - 0 !
3 files changed, 87 insertions(+), 36 deletions(-)

 fix xmpp remote crash
#
#
# patch "libpurple/protocols/jabber/jingle/jingle.c" from
# [185980c698f1c26bad6f0f8a23e866c0645ea1d9] to
# [2933cb6d81371155c69a5a4f97b6b3bf09aa5aa5]
# 
# patch "libpurple/protocols/jabber/jingle/rtp.c" from
# [2656346b8bf03a7995ef995e7c2e154facdf905e] to
# [dcacf06a52d80015f7bc1676b1ccbdb182276784]
# 
# patch "libpurple/protocols/jabber/jingle/session.c" from
# [00e7dd7888866a805129a8f17a545159c7e6e378] to
# [6f394c4ccad3d4ef658116e13e9db59d4b4a46fb]
#
CVE 2011 4603.patch | (download)

libpurple/protocols/silc/ops.c | 9 8 + 1 - 0 !
1 file changed, 8 insertions(+), 1 deletion(-)

 fix silc remote crash
#
#
# patch "libpurple/protocols/silc/ops.c"
#  from [80bd9a7d3faf9e5ef28438647159fe19847e9839]
#    to [e828291021afbdd6e6370738aa6224788bf885a3]
#
============================================================

CVE 2012 3374.patch | (download)

libpurple/protocols/mxit/markup.c | 7 4 + 3 - 0 !
1 file changed, 4 insertions(+), 3 deletions(-)

 fix mxit remote buffer overflow
CVE 2013 6490.patch | (download)

libpurple/protocols/simple/simple.c | 2 1 + 1 - 0 !
1 file changed, 1 insertion(+), 1 deletion(-)

---
CVE 2013 6485.patch | (download)

libpurple/util.c | 7 5 + 2 - 0 !
1 file changed, 5 insertions(+), 2 deletions(-)

---