Slackware: 2004-296-01: gaim Security Update
Summary
Here are the details from the Slackware 10.0 ChangeLog: patches/packages/gaim-1.0.2-i486-1.tgz: Upgraded to gaim-1.0.2 and gaim-encryption-2.32. A buffer overflow in the MSN protocol handler for GAIM 0.79 to 1.0.1 allows remote attackers to cause a denial of service (application crash) and may allow the execution of arbitrary code. For more details, see: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0891 (* Security fix *)
Where Find New Packages
Updated package for Slackware 9.0:
Updated package for Slackware 9.1:
Updated package for Slackware 10.0:
Updated package for Slackware -current:
MD5 Signatures
Slackware 9.0 package:
1a5f3b8edcf6ceceefea4e23cc177509 gaim-1.0.2-i386-1.tgz
Slackware 9.1 package:
52273586aefcd5b72db8b455fb4b7790 gaim-1.0.2-i486-1.tgz
Slackware 10.0 package:
f40eebc81b21b3503be5fc721bcd893f gaim-1.0.2-i486-1.tgz
Slackware -current package:
b459d1f10c35d3e4df78a3e47dbc693a gaim-1.0.2-i486-1.tgz
Installation Instructions
Installation instructions: Upgrade the package as root: # upgradepkg gaim-1.0.2-i486-1.tgz