ubuntu/+source/pidgin:applied/ubuntu/oneiric-devel

Last commit made on 2013-02-25
Get this branch:
git clone -b applied/ubuntu/oneiric-devel https://git.launchpad.net/ubuntu/+source/pidgin
Members of Ubuntu Server Dev import team can upload to this branch. Log in for directions.

Branch merges

Branch information

Name:
applied/ubuntu/oneiric-devel
Repository:
lp:ubuntu/+source/pidgin

Recent commits

defefd7... by Marc Deslauriers on 2013-02-21

Import patches-applied version 1:2.10.0-0ubuntu2.2 to applied/ubuntu/oneiric-security

Imported using git-ubuntu import.

Changelog parent: e3134d7bdc0cba15f50312a1965d560415c707f5
Unapplied parent: 725f7020ef3d62de49d392ce5c6ec12422413486

New changelog entries:
  * SECURITY UPDATE: file overwrite via MXit crafted pathname
    - debian/patches/CVE-2013-0271.patch: properly escape filenames in
      libpurple/protocols/mxit/formcmds.c,
      libpurple/protocols/mxit/splashscreen.c.
    - CVE-2013-0271
  * SECURITY UPDATE: arbitrary code execution via long HTTP header in MXit
    - debian/patches/CVE-2013-0272.patch: properly check lengths in
      libpurple/protocols/mxit/http.c.
    - CVE-2013-0272
  * SECURITY UPDATE: denial of service via long user ID in Sametime
    - debian/patches/CVE-2013-0273.patch: use g_strlcpy in
      libpurple/protocols/sametime/sametime.c.
    - CVE-2013-0273
  * SECURITY UPDATE: denial of service via long UPnP responses
    - debian/patches/CVE-2013-0274.patch: use g_strlcpy in libpurple/upnp.c.
    - CVE-2013-0274

725f702... by Marc Deslauriers on 2013-02-21

CVE-2013-0274.patch

No DEP3 Subject or Description header found

Gbp-Pq: CVE-2013-0274.patch.

026254a... by Marc Deslauriers on 2013-02-21

CVE-2013-0273.patch

No DEP3 Subject or Description header found

Gbp-Pq: CVE-2013-0273.patch.

7c218d5... by Marc Deslauriers on 2013-02-21

CVE-2013-0272.patch

No DEP3 Subject or Description header found

Gbp-Pq: CVE-2013-0272.patch.

ddb12a2... by Marc Deslauriers on 2013-02-21

CVE-2013-0271.patch

No DEP3 Subject or Description header found

Gbp-Pq: CVE-2013-0271.patch.

d61cd13... by Marc Deslauriers on 2013-02-21

MXit buffer overflow

Gbp-Pq: CVE-2012-3374.patch.

e5da9c9... by Marc Deslauriers on 2013-02-21

Fix a possible MSN remote crash

Gbp-Pq: CVE-2012-2318.patch.

c1b7e17... by Marc Deslauriers on 2013-02-21

Fix a possible XMPP remote crash

Gbp-Pq: CVE-2012-2214.patch.

0be21db... by Marc Deslauriers on 2013-02-21

Fix remote crash in MSN offline instant messages

Gbp-Pq: CVE-2012-1178.patch.

529318d... by Marc Deslauriers on 2013-02-21

Fix XMPP remote crash

Gbp-Pq: CVE-2011-4939.patch.