File _patchinfo of Package patchinfo

<patchinfo incident="pidgin">
  <packager>lijews</packager>
  <issue tracker="bnc" id="804742">VUL-0: pidgin: various security issues</issue>
  <issue tracker="cve" id="CVE-2013-0273"></issue>
  <issue tracker="cve" id="CVE-2013-0272"></issue>
  <issue tracker="cve" id="CVE-2013-0274"></issue>
  <category>security</category>
  <rating>important</rating>
  <summary>pidgin: various security fixes</summary>
  <description>pidgin was updated to fix security issues:
- Fix a crash when receiving UPnP responses with abnormally long values. (CVE-2013-0274)
- Fix a crash in Sametime when a malicious server sends us an abnormally long user ID. (CVE-2013-0273)
- Fix a bug where the MXit server or a man-in-the-middle could potentially send specially crafted data that could overflow a buffer and lead to a crash or remote code execution.(CVE-2013-0272)
</description>
</patchinfo>
openSUSE Build Service is sponsored by