File _patchinfo of Package patchinfo
<patchinfo incident="pidgin">
<packager>lijews</packager>
<issue tracker="bnc" id="804742">VUL-0: pidgin: various security issues</issue>
<issue tracker="cve" id="CVE-2013-0273"></issue>
<issue tracker="cve" id="CVE-2013-0272"></issue>
<issue tracker="cve" id="CVE-2013-0274"></issue>
<category>security</category>
<rating>important</rating>
<summary>pidgin: various security fixes</summary>
<description>pidgin was updated to fix security issues:
- Fix a crash when receiving UPnP responses with abnormally long values. (CVE-2013-0274)
- Fix a crash in Sametime when a malicious server sends us an abnormally long user ID. (CVE-2013-0273)
- Fix a bug where the MXit server or a man-in-the-middle could potentially send specially crafted data that could overflow a buffer and lead to a crash or remote code execution.(CVE-2013-0272)
</description>
</patchinfo>