Pidgin; Rhsa-2009:1218: Critical Security Update; Rhsa-2009:1139: Moderate Security And Bug Fix Update - Red Hat ENTERPRISE LINUX 5.4 - TECHNICAL NOTES Manual

Hide thumbs Also See for ENTERPRISE LINUX 5.4 - TECHNICAL NOTES:
Table of Contents

Advertisement

• the /usr/bin/pear command emitted warnings when the global "error_reporting" PHP configuration
variable was set to the value "E_STRICT". The E_STRICT error-reporting level was introduced into
PHP and PEAR following the release of PHP 5, and has the aim of ensuring that the package is
strictly PHP 5-compatible. With this updated package, /usr/bin/pear no longer emits warnings when
the error-reporting level is set to E_STRICT.
All users of php-pear are advised to upgrade to this updated package, which resolves these issues.

1.175. pidgin

1.175.1. RHSA-2009:1218: Critical security update

Important
This update has already been released (prior to the GA of this release) as the security
RHSA-2009:1218
errata
Updated pidgin packages that fix a security issue are now available for Red Hat Enterprise Linux 3, 4,
and 5.
This update has been rated as having critical security impact by the Red Hat Security Response
Team.
Pidgin is an instant messaging program which can log in to multiple accounts on multiple instant
messaging networks simultaneously.
Federico Muttis of Core Security Technologies discovered a flaw in Pidgin's MSN protocol handler.
If a user received a malicious MSN message, it was possible to execute arbitrary code with the
permissions of the user running Pidgin.
Note: Users can change their privacy settings to only allow messages from users on their buddy list to
limit the impact of this flaw.
These packages upgrade Pidgin to version 2.5.9. Refer to the Pidgin release notes for a full list of
changes: http://developer.pidgin.im/wiki/ChangeLog
All Pidgin users should upgrade to these updated packages, which resolve this issue. Pidgin must be
restarted for this update to take effect.

1.175.2. RHSA-2009:1139: Moderate security and bug fix update

Important
This update has already been released (prior to the GA of this release) as the security
RHSA-2009:1139
errata
Updated pidgin packages that fix one security issue and one bug are now available for Red Hat
Enterprise Linux 4 and 5.
1421
https://www.redhat.com/security/data/cve/CVE-2009-2694.html
1419
(BZ#461142
1420
1421
(CVE-2009-2694
)
1422
)
pidgin
203

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the ENTERPRISE LINUX 5.4 - TECHNICAL NOTES and is the answer not in the manual?

Questions and answers

Table of Contents