Free and open-source vulnerability scanner
Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.
Install NowAvailable for macOS, Windows, and Linux
CentOS Update for pidgin CESA-2009:1218 centos3 i386
Information
Severity
Severity
Family
Family
CVSSv2 Base
CVSSv2 Base
CVSSv2 Vector
CVSSv2 Vector
Solution Type
Solution Type
Created
Created
Modified
Modified
Summary
The remote host is missing an update for the 'pidgin' package(s) announced via the referenced advisory.
Insight
Insight
Pidgin is an instant messaging program which can log in to multiple accounts on multiple instant messaging networks simultaneously. Federico Muttis of Core Security Technologies discovered a flaw in Pidgin's MSN protocol handler. If a user received a malicious MSN message, it was possible to execute arbitrary code with the permissions of the user running Pidgin. (CVE-2009-2694) Note: Users can change their privacy settings to only allow messages from users on their buddy list to limit the impact of this flaw. These packages upgrade Pidgin to version 2.5.9. Refer to the linked Pidgin release notes for a full list of changes. All Pidgin users should upgrade to these updated packages, which resolve this issue. Pidgin must be restarted for this update to take effect.
Affected Software
Affected Software
pidgin on CentOS 3
Solution
Solution
Please install the updated packages.