Comment 6 for bug 1000363

Revision history for this message
Felix Geyer (debfx) wrote :

I'm attaching a debdiff for precise but lucid - oneiric have the exact same package version.
I have checked (with -Werror=format-security) that there are no other format string issues

pidgin-otr (3.2.0-5ubuntu0.12.04.1) precise; urgency=low

  * SECURITY UPDATE: format string vulnerability (LP: #1000363)
    - otr-plugin.c: patch from upstream
    - CVE-2012-2369

 -- Felix Geyer <email address hidden> Wed, 16 May 2012 20:59:11 +0200