Package: gaim Version: 1:0.58-2.4 Severity: important Tags: security, sarge, woody, sid
Unfortunately the CAN-pages are not yet present, the summary on http://lwn.net/Articles/130537/ seems to indicate, that "only" a DOS is possible, if indeed information *from* the user can be extracted, than please raise the priority. If you've fixed them in 1:1.2.1-1 or earlier please remove the sid-tag (and maybe add a CAN in an later upload). If woody is not impacted, then please update http://www.debian.org/security/nonvulns-woody before closing the bug. And yes, I saw #268783 but given its age I think it relates to a different issue. -- System Information Debian Release: 3.0 Architecture: i386 Kernel: Linux zola 2.4.28-grsec-hk02 #1 Mon Dec 27 14:36:44 CET 2004 i686 Locale: LANG=C, LC_CTYPE=C Versions of packages gaim depends on: ii gaim-common 1:0.58-2.4 GPL multi-protocol instant messeng ii libaudiofile0 0.2.3-4 The Audiofile Library ii libc6 2.2.5-11.8 GNU C Library: Shared libraries an ii libesd0 0.2.23-3 Enlightened Sound Daemon - Shared ii libgdk-pixbuf2 0.17.0-2woody2 The GdkPixBuf library. ii libglib1.2 1.2.10-4 The GLib library of C routines ii libgtk1.2 1.2.10-11 The GIMP Toolkit set of widgets fo ii libperl5.6 5.6.1-8.9 Shared Perl library. ii nas-lib 1.5-1 The Network Audio System (NAS). (s ii xlibs 4.1.0-16woody5 X Window System client libraries -- Dr. Helge Kreutzmann, Dipl.-Phys. [EMAIL PROTECTED] gpg signed mail preferred 64bit GNU powered http://www.itp.uni-hannover.de/~kreutzm Help keep free software "libre": http://www.freepatents.org/ -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]