File _patchinfo of Package patchinfo
<patchinfo incident="pidgin"> <packager>lijews</packager> <issue tracker="bnc" id="804742">VUL-0: pidgin: various security issues</issue> <issue tracker="cve" id="CVE-2013-0273"></issue> <issue tracker="cve" id="CVE-2013-0272"></issue> <issue tracker="cve" id="CVE-2013-0274"></issue> <category>security</category> <rating>important</rating> <summary>pidgin: various security fixes</summary> <description>pidgin was updated to fix security issues: - Fix a crash when receiving UPnP responses with abnormally long values. (CVE-2013-0274) - Fix a crash in Sametime when a malicious server sends us an abnormally long user ID. (CVE-2013-0273) - Fix a bug where the MXit server or a man-in-the-middle could potentially send specially crafted data that could overflow a buffer and lead to a crash or remote code execution.(CVE-2013-0272) </description> </patchinfo>