CVE-2009-1373

Publication date 26 May 2009

Last updated 24 July 2024


Ubuntu priority

Buffer overflow in the XMPP SOCKS5 bytestream server in Pidgin (formerly Gaim) before 2.5.6 allows remote authenticated users to execute arbitrary code via vectors involving an outbound XMPP file transfer. NOTE: some of these details are obtained from third party information.

Status

Package Ubuntu Release Status
gaim 9.04 jaunty Not in release
8.10 intrepid Not in release
8.04 LTS hardy Not in release
7.10 gutsy Not in release
6.06 LTS dapper
Fixed 1:1.5.0+1.5.1cvs20051015-1ubuntu10.2
pidgin 9.04 jaunty
Fixed 1:2.5.5-1ubuntu8.1
8.10 intrepid
Fixed 1:2.5.2-0ubuntu1.2
8.04 LTS hardy
Fixed 1:2.4.1-1ubuntu2.4
7.04 feisty Not in release
6.06 LTS dapper Not in release

Patch details

For informational purposes only. We recommend not to cherry-pick updates. How can I get the fixes?

Package Patch details
pidgin

References

Related Ubuntu Security Notices (USN)

Other references