5 Medium
CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
PARTIAL
AV:N/AC:L/Au:N/C:N/I:N/A:P
0.036 Low
EPSS
Percentile
91.7%
CentOS Errata and Security Advisory CESA-2005:518
The Gaim application is a multi-protocol instant messaging client.
Jacopo Ottaviani discovered a bug in the way Gaim handles Yahoo! Messenger
file transfers. It is possible for a malicious user to send a specially
crafted file transfer request that causes Gaim to crash. The Common
Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name
CAN-2005-1269 to this issue.
Additionally, Hugo de Bokkenrijder discovered a bug in the way Gaim parses
MSN Messenger messages. It is possible for a malicious user to send a
specially crafted MSN Messenger message that causes Gaim to crash. The
Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned
the name CAN-2005-1934 to this issue.
Users of gaim are advised to upgrade to this updated package, which contains
version 1.3.1 and is not vulnerable to these issues.
Merged security bulletin from advisories:
https://lists.centos.org/pipermail/centos-announce/2005-June/074034.html
https://lists.centos.org/pipermail/centos-announce/2005-June/074035.html
https://lists.centos.org/pipermail/centos-announce/2005-June/074038.html
https://lists.centos.org/pipermail/centos-announce/2005-June/074041.html
https://lists.centos.org/pipermail/centos-announce/2005-June/074043.html
https://lists.centos.org/pipermail/centos-announce/2005-June/074046.html
https://lists.centos.org/pipermail/centos-announce/2005-June/074050.html
Affected packages:
gaim
Upstream details at:
https://access.redhat.com/errata/RHSA-2005:518
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
CentOS | 3 | x86_64 | gaim | < 1.3.1-0.el3 | gaim-1.3.1-0.el3.x86_64.rpm |
CentOS | 3 | i386 | gaim | < 1.3.1-0.el3 | gaim-1.3.1-0.el3.i386.rpm |
CentOS | 3 | ia64 | gaim | < 1.3.1-0.el3 | gaim-1.3.1-0.el3.ia64.rpm |
CentOS | 4 | ia64 | gaim | < 1.3.1-0.el4 | gaim-1.3.1-0.el4.ia64.rpm |
CentOS | 3 | i386 | gaim | < 1.3.1-0.el3 | gaim-1.3.1-0.el3.i386.rpm |
CentOS | 3 | x86_64 | gaim | < 1.3.1-0.el3 | gaim-1.3.1-0.el3.x86_64.rpm |
CentOS | 3 | s390 | gaim | < 1.3.1-0.el3 | gaim-1.3.1-0.el3.s390.rpm |
CentOS | 3 | s390x | gaim | < 1.3.1-0.el3 | gaim-1.3.1-0.el3.s390x.rpm |