--------------------------------------------------------------------- Fedora Legacy Test Update Notification FEDORALEGACY-2005-123013 Bugzilla https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=123013 2005-06-19 --------------------------------------------------------------------- Name : xchat Versions : fc1: xchat-2.0.7-1.FC1.1.legacy Versions : fc2: xchat-2.0.7-5.1.legacy Summary : A GTK+ IRC (chat) client. Description : X-Chat is an IRC client for the X Window System and GTK+. X-Chat is fairly easy to use and includes a nice interface. --------------------------------------------------------------------- Update Information: X-Chat is a graphical IRC chat client for the X Window System. A stack buffer overflow flaw was found in the X-Chat's Socks-5 proxy code. An attacker could create a malicious Socks-5 proxy server in such a way that X-Chat would execute arbitrary code if a victim configured X-Chat to use the proxy. Users of X-Chat should upgrade to this updated package which contains a backported security patch and is not vulnerable to this issue. --------------------------------------------------------------------- Changelogs fc1: * Sat Jun 11 2005 Marc Deslauriers <marcdeslauriers@xxxxxxxxxxxx> 1:2.0.7-1.FC1.1.legacy - Added patch to fix CAN-2004-0409 fc2: * Mon May 02 2005 Marc Deslauriers <marcdeslauriers@xxxxxxxxxxxx> 1:2.0.7-5.1.legacy - Added patch to fix CAN-2004-0409 --------------------------------------------------------------------- This update can be downloaded from: http://download.fedoralegacy.org/ (sha1sums) fc1: 949871bada73a7e47b412e04b296fb8e661a6889 fedora/1/updates-testing/i386/xchat-2.0.7-1.FC1.1.legacy.i386.rpm e9defab76a100c3c066b85a9fa83ebcd1527ce71 fedora/1/updates-testing/SRPMS/xchat-2.0.7-1.FC1.1.legacy.src.rpm fc2: 557e51ab8c91c4e824c132b4e58fc372ba6bf4c7 fedora/2/updates-testing/i386/xchat-2.0.7-5.1.legacy.i386.rpm 4e856255dd724c8364556e792c162b1f0fbc29ea fedora/2/updates-testing/SRPMS/xchat-2.0.7-5.1.legacy.src.rpm --------------------------------------------------------------------- Please test and comment in bugzilla.
Attachment:
signature.asc
Description: OpenPGP digital signature
-- fedora-legacy-list@xxxxxxxxxx http://www.redhat.com/mailman/listinfo/fedora-legacy-list