Skip to navigation

Security Advisory Moderate: pidgin security update

Advisory: RHSA-2009:1453-1
Type: Security Advisory
Severity: Moderate
Issued on: 2009-09-21
Last updated on: 2009-09-21
Affected Products: RHEL Desktop Workstation (v. 5 client)
RHEL Optional Productivity Applications (v. 5 server)
RHEL Optional Productivity Applications EUS (v. 5.4.z server)
Red Hat Desktop (v. 4)
Red Hat Enterprise Linux AS (v. 4)
Red Hat Enterprise Linux AS (v. 4.8.z)
Red Hat Enterprise Linux Desktop (v. 5 client)
Red Hat Enterprise Linux ES (v. 4)
Red Hat Enterprise Linux ES (v. 4.8.z)
Red Hat Enterprise Linux WS (v. 4)
CVEs (cve.mitre.org): CVE-2009-2703
CVE-2009-3026
CVE-2009-3083
CVE-2009-3085

Details

Updated pidgin packages that fix several security issues are now available
for Red Hat Enterprise Linux 4 and 5.

This update has been rated as having moderate security impact by the Red
Hat Security Response Team.

Pidgin is an instant messaging program which can log in to multiple
accounts on multiple instant messaging networks simultaneously. Info/Query
(IQ) is an Extensible Messaging and Presence Protocol (XMPP) specific
request-response mechanism.

A NULL pointer dereference flaw was found in the way the Pidgin XMPP
protocol plug-in processes IQ error responses when trying to fetch a custom
smiley. A remote client could send a specially-crafted IQ error response
that would crash Pidgin. (CVE-2009-3085)

A NULL pointer dereference flaw was found in the way the Pidgin IRC
protocol plug-in handles IRC topics. A malicious IRC server could send a
specially-crafted IRC TOPIC message, which once received by Pidgin, would
lead to a denial of service (Pidgin crash). (CVE-2009-2703)

It was discovered that, when connecting to certain, very old Jabber servers
via XMPP, Pidgin may ignore the "Require SSL/TLS" setting. In these
situations, a non-encrypted connection is established rather than the
connection failing, causing the user to believe they are using an encrypted
connection when they are not, leading to sensitive information disclosure
(session sniffing). (CVE-2009-3026)

A NULL pointer dereference flaw was found in the way the Pidgin MSN
protocol plug-in handles improper MSNSLP invitations. A remote attacker
could send a specially-crafted MSNSLP invitation request, which once
accepted by a valid Pidgin user, would lead to a denial of service (Pidgin
crash). (CVE-2009-3083)

These packages upgrade Pidgin to version 2.6.2. Refer to the Pidgin release
notes for a full list of changes: http://developer.pidgin.im/wiki/ChangeLog

All Pidgin users should upgrade to these updated packages, which correct
these issues. Pidgin must be restarted for this update to take effect.


Solution

Before applying this update, make sure that all previously-released
errata relevant to your system have been applied.

This update is available via Red Hat Network. Details on how to use
the Red Hat Network to apply this update are available at
http://kbase.redhat.com/faq/docs/DOC-11259

Updated packages

RHEL Desktop Workstation (v. 5 client)

SRPMS:
pidgin-2.6.2-2.el5.src.rpm
File outdated by:  RHBA-2010:0176
    MD5: f792af1e73dfc4551ec0f1ed7cd403a2
 
IA-32:
finch-devel-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2014:0139
    MD5: 5fbc9bdd4baf393f0c354006ae0f8b1e
libpurple-devel-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2014:0139
    MD5: bd5c5ade83a0a0a622b9427a77906173
pidgin-devel-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2014:0139
    MD5: 78a9e0e2e39cda68621a7af4ba7860fb
 
x86_64:
finch-devel-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2014:0139
    MD5: 5fbc9bdd4baf393f0c354006ae0f8b1e
finch-devel-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHSA-2014:0139
    MD5: 08a2ce8a3ec90d8f59b4e3dbb5244bf6
libpurple-devel-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2014:0139
    MD5: bd5c5ade83a0a0a622b9427a77906173
libpurple-devel-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHSA-2014:0139
    MD5: 8ab31b2de855927f4e28cf939daa75cb
pidgin-devel-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2014:0139
    MD5: 78a9e0e2e39cda68621a7af4ba7860fb
pidgin-devel-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHSA-2014:0139
    MD5: c08ba7ee7a45e75e0a98e7c6a7774b14
 
RHEL Optional Productivity Applications (v. 5 server)

SRPMS:
pidgin-2.6.2-2.el5.src.rpm
File outdated by:  RHBA-2010:0176
    MD5: f792af1e73dfc4551ec0f1ed7cd403a2
 
IA-32:
finch-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2013:0646
    MD5: 7080693878fe867dc4c5653da02dce50
finch-devel-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2013:0646
    MD5: 5fbc9bdd4baf393f0c354006ae0f8b1e
libpurple-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2013:0646
    MD5: 6296cc361375035ebf28c2eb935160c0
libpurple-devel-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2013:0646
    MD5: bd5c5ade83a0a0a622b9427a77906173
libpurple-perl-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2013:0646
    MD5: 2ad1a927fdc7970b100a9b03003d650b
libpurple-tcl-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2013:0646
    MD5: 8eeb9a80119cfa59460418038d0b17cd
pidgin-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2013:0646
    MD5: 937bec32acdf92b746b4759938090a1a
pidgin-devel-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2013:0646
    MD5: 78a9e0e2e39cda68621a7af4ba7860fb
pidgin-perl-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2013:0646
    MD5: b749b7faf85ae826c6bcaaf9caaf2bd5
 
x86_64:
finch-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2013:0646
    MD5: 7080693878fe867dc4c5653da02dce50
finch-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHSA-2013:0646
    MD5: 1bb46db4c34cff02d476b19826049a89
finch-devel-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2013:0646
    MD5: 5fbc9bdd4baf393f0c354006ae0f8b1e
finch-devel-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHSA-2013:0646
    MD5: 08a2ce8a3ec90d8f59b4e3dbb5244bf6
libpurple-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2013:0646
    MD5: 6296cc361375035ebf28c2eb935160c0
libpurple-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHSA-2013:0646
    MD5: f363c06a3575cb611f3d6a5ee0994599
libpurple-devel-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2013:0646
    MD5: bd5c5ade83a0a0a622b9427a77906173
libpurple-devel-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHSA-2013:0646
    MD5: 8ab31b2de855927f4e28cf939daa75cb
libpurple-perl-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHSA-2013:0646
    MD5: 9c1139b345031578da49e73a66c257f0
libpurple-tcl-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHSA-2013:0646
    MD5: be502cab2b0b84c190c4dc8f98d01536
pidgin-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2013:0646
    MD5: 937bec32acdf92b746b4759938090a1a
pidgin-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHSA-2013:0646
    MD5: ee8836c7faf9523f7ef5845e864e4899
pidgin-devel-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2013:0646
    MD5: 78a9e0e2e39cda68621a7af4ba7860fb
pidgin-devel-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHSA-2013:0646
    MD5: c08ba7ee7a45e75e0a98e7c6a7774b14
pidgin-perl-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHSA-2013:0646
    MD5: 94414fc8b00ab4fd1095690f6f9b8c05
 
RHEL Optional Productivity Applications EUS (v. 5.4.z server)

SRPMS:
pidgin-2.6.2-2.el5.src.rpm
File outdated by:  RHBA-2010:0176
    MD5: f792af1e73dfc4551ec0f1ed7cd403a2
 
IA-32:
finch-2.6.2-2.el5.i386.rpm
File outdated by:  RHBA-2010:0176
    MD5: 7080693878fe867dc4c5653da02dce50
finch-devel-2.6.2-2.el5.i386.rpm
File outdated by:  RHBA-2010:0176
    MD5: 5fbc9bdd4baf393f0c354006ae0f8b1e
libpurple-2.6.2-2.el5.i386.rpm
File outdated by:  RHBA-2010:0176
    MD5: 6296cc361375035ebf28c2eb935160c0
libpurple-devel-2.6.2-2.el5.i386.rpm
File outdated by:  RHBA-2010:0176
    MD5: bd5c5ade83a0a0a622b9427a77906173
libpurple-perl-2.6.2-2.el5.i386.rpm
File outdated by:  RHBA-2010:0176
    MD5: 2ad1a927fdc7970b100a9b03003d650b
libpurple-tcl-2.6.2-2.el5.i386.rpm
File outdated by:  RHBA-2010:0176
    MD5: 8eeb9a80119cfa59460418038d0b17cd
pidgin-2.6.2-2.el5.i386.rpm
File outdated by:  RHBA-2010:0176
    MD5: 937bec32acdf92b746b4759938090a1a
pidgin-devel-2.6.2-2.el5.i386.rpm
File outdated by:  RHBA-2010:0176
    MD5: 78a9e0e2e39cda68621a7af4ba7860fb
pidgin-perl-2.6.2-2.el5.i386.rpm
File outdated by:  RHBA-2010:0176
    MD5: b749b7faf85ae826c6bcaaf9caaf2bd5
 
x86_64:
finch-2.6.2-2.el5.i386.rpm
File outdated by:  RHBA-2010:0176
    MD5: 7080693878fe867dc4c5653da02dce50
finch-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHBA-2010:0176
    MD5: 1bb46db4c34cff02d476b19826049a89
finch-devel-2.6.2-2.el5.i386.rpm
File outdated by:  RHBA-2010:0176
    MD5: 5fbc9bdd4baf393f0c354006ae0f8b1e
finch-devel-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHBA-2010:0176
    MD5: 08a2ce8a3ec90d8f59b4e3dbb5244bf6
libpurple-2.6.2-2.el5.i386.rpm
File outdated by:  RHBA-2010:0176
    MD5: 6296cc361375035ebf28c2eb935160c0
libpurple-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHBA-2010:0176
    MD5: f363c06a3575cb611f3d6a5ee0994599
libpurple-devel-2.6.2-2.el5.i386.rpm
File outdated by:  RHBA-2010:0176
    MD5: bd5c5ade83a0a0a622b9427a77906173
libpurple-devel-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHBA-2010:0176
    MD5: 8ab31b2de855927f4e28cf939daa75cb
libpurple-perl-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHBA-2010:0176
    MD5: 9c1139b345031578da49e73a66c257f0
libpurple-tcl-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHBA-2010:0176
    MD5: be502cab2b0b84c190c4dc8f98d01536
pidgin-2.6.2-2.el5.i386.rpm
File outdated by:  RHBA-2010:0176
    MD5: 937bec32acdf92b746b4759938090a1a
pidgin-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHBA-2010:0176
    MD5: ee8836c7faf9523f7ef5845e864e4899
pidgin-devel-2.6.2-2.el5.i386.rpm
File outdated by:  RHBA-2010:0176
    MD5: 78a9e0e2e39cda68621a7af4ba7860fb
pidgin-devel-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHBA-2010:0176
    MD5: c08ba7ee7a45e75e0a98e7c6a7774b14
pidgin-perl-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHBA-2010:0176
    MD5: 94414fc8b00ab4fd1095690f6f9b8c05
 
Red Hat Desktop (v. 4)

SRPMS:
pidgin-2.6.2-2.el4.src.rpm
File outdated by:  RHSA-2011:1820
    MD5: 93e09ec051c73f416539c514f55dff2d
 
IA-32:
finch-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: c688128ba022fd033bd4439699338164
finch-devel-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: 3dedaa854cd45b21d131e3f23b5fb30d
libpurple-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: bab06daf303a8a76fd0e90f91a327c3d
libpurple-devel-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: e9cc8198e90e021d00cb363ca8a3ed3b
libpurple-perl-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: 14ddf722aff72c4da6d44b89d38746c5
libpurple-tcl-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: ed49de3ebe5198ce0d87e410421903e0
pidgin-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: ecd8a58803384d38e740a71e00793085
pidgin-devel-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: c2a341d28f0ff823af1a4caece709a22
pidgin-perl-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: fdb3c763e30466679324ea7a7736ce45
 
x86_64:
finch-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 4c4ad4733364d35e0505b7c6a44e072f
finch-devel-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 78585cac35c7570487bfe6c32683c803
libpurple-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 37100a06938af163d62bf3365bcef6b9
libpurple-devel-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: d6b46fb6fee5750ea18091eceae38582
libpurple-perl-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 82a02682645ea1b331ca5464ed2adea1
libpurple-tcl-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 87b6ba72676033db8ff9020fce5ddd2d
pidgin-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 6e9f2e54e1700fea17f08710952e5369
pidgin-devel-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: f05a2b3ef0b5993d908ceabb1333afd4
pidgin-perl-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 1e08877d9d9dbac5ed9dcadebcfc3bd2
 
Red Hat Enterprise Linux AS (v. 4)

SRPMS:
pidgin-2.6.2-2.el4.src.rpm
File outdated by:  RHSA-2011:1820
    MD5: 93e09ec051c73f416539c514f55dff2d
 
IA-32:
finch-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: c688128ba022fd033bd4439699338164
finch-devel-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: 3dedaa854cd45b21d131e3f23b5fb30d
libpurple-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: bab06daf303a8a76fd0e90f91a327c3d
libpurple-devel-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: e9cc8198e90e021d00cb363ca8a3ed3b
libpurple-perl-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: 14ddf722aff72c4da6d44b89d38746c5
libpurple-tcl-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: ed49de3ebe5198ce0d87e410421903e0
pidgin-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: ecd8a58803384d38e740a71e00793085
pidgin-devel-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: c2a341d28f0ff823af1a4caece709a22
pidgin-perl-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: fdb3c763e30466679324ea7a7736ce45
 
IA-64:
finch-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 636ff202a25a2677ddcfc6f1b4ebd026
finch-devel-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 9ea49e9a1b973040af8e570644f6965d
libpurple-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: b98b527bca06f621696a8bc97f9aceaf
libpurple-devel-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 96435afd0a6ffe05e093133eccc465de
libpurple-perl-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 4de4ea128ee7f1e8de4d79f9518a39a5
libpurple-tcl-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 8ce2c9bc38af363f8ecb9880a6403240
pidgin-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 10b1ee1e046a0bc58c20d390a529c261
pidgin-devel-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: d9dd5fe181d3b962db132cbb2d11b00d
pidgin-perl-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: d2075526c86e049bab77122c6dda1160
 
PPC:
finch-2.6.2-2.el4.ppc.rpm
File outdated by:  RHSA-2011:1820
    MD5: d7f6bae4eab415680cfd775e237674f0
finch-devel-2.6.2-2.el4.ppc.rpm
File outdated by:  RHSA-2011:1820
    MD5: 1e935743315171437b01bb73696aa899
libpurple-2.6.2-2.el4.ppc.rpm
File outdated by:  RHSA-2011:1820
    MD5: c59835176cf9007967a1148f9687227e
libpurple-devel-2.6.2-2.el4.ppc.rpm
File outdated by:  RHSA-2011:1820
    MD5: 3c919d95930a83c0306f9a1db71b0e95
libpurple-perl-2.6.2-2.el4.ppc.rpm
File outdated by:  RHSA-2011:1820
    MD5: f866717403746758e7086986d601340d
libpurple-tcl-2.6.2-2.el4.ppc.rpm
File outdated by:  RHSA-2011:1820
    MD5: 02626aa1f72d41718ed4ab198763fd89
pidgin-2.6.2-2.el4.ppc.rpm
File outdated by:  RHSA-2011:1820
    MD5: a10cca56b9ea850a6598f390a7eb3b48
pidgin-devel-2.6.2-2.el4.ppc.rpm
File outdated by:  RHSA-2011:1820
    MD5: b33f8d2158ea162b680a9f3221c0524a
pidgin-perl-2.6.2-2.el4.ppc.rpm
File outdated by:  RHSA-2011:1820
    MD5: e1b7352cfbdd71397fe8f4a7316d229d
 
x86_64:
finch-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 4c4ad4733364d35e0505b7c6a44e072f
finch-devel-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 78585cac35c7570487bfe6c32683c803
libpurple-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 37100a06938af163d62bf3365bcef6b9
libpurple-devel-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: d6b46fb6fee5750ea18091eceae38582
libpurple-perl-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 82a02682645ea1b331ca5464ed2adea1
libpurple-tcl-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 87b6ba72676033db8ff9020fce5ddd2d
pidgin-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 6e9f2e54e1700fea17f08710952e5369
pidgin-devel-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: f05a2b3ef0b5993d908ceabb1333afd4
pidgin-perl-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 1e08877d9d9dbac5ed9dcadebcfc3bd2
 
Red Hat Enterprise Linux AS (v. 4.8.z)

SRPMS:
pidgin-2.6.2-2.el4.src.rpm
File outdated by:  RHSA-2011:1820
    MD5: 93e09ec051c73f416539c514f55dff2d
 
IA-32:
finch-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2010:0788
    MD5: c688128ba022fd033bd4439699338164
finch-devel-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2010:0788
    MD5: 3dedaa854cd45b21d131e3f23b5fb30d
libpurple-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2010:0788
    MD5: bab06daf303a8a76fd0e90f91a327c3d
libpurple-devel-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2010:0788
    MD5: e9cc8198e90e021d00cb363ca8a3ed3b
libpurple-perl-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2010:0788
    MD5: 14ddf722aff72c4da6d44b89d38746c5
libpurple-tcl-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2010:0788
    MD5: ed49de3ebe5198ce0d87e410421903e0
pidgin-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2010:0788
    MD5: ecd8a58803384d38e740a71e00793085
pidgin-devel-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2010:0788
    MD5: c2a341d28f0ff823af1a4caece709a22
pidgin-perl-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2010:0788
    MD5: fdb3c763e30466679324ea7a7736ce45
 
IA-64:
finch-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2010:0788
    MD5: 636ff202a25a2677ddcfc6f1b4ebd026
finch-devel-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2010:0788
    MD5: 9ea49e9a1b973040af8e570644f6965d
libpurple-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2010:0788
    MD5: b98b527bca06f621696a8bc97f9aceaf
libpurple-devel-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2010:0788
    MD5: 96435afd0a6ffe05e093133eccc465de
libpurple-perl-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2010:0788
    MD5: 4de4ea128ee7f1e8de4d79f9518a39a5
libpurple-tcl-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2010:0788
    MD5: 8ce2c9bc38af363f8ecb9880a6403240
pidgin-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2010:0788
    MD5: 10b1ee1e046a0bc58c20d390a529c261
pidgin-devel-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2010:0788
    MD5: d9dd5fe181d3b962db132cbb2d11b00d
pidgin-perl-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2010:0788
    MD5: d2075526c86e049bab77122c6dda1160
 
PPC:
finch-2.6.2-2.el4.ppc.rpm
File outdated by:  RHSA-2010:0788
    MD5: d7f6bae4eab415680cfd775e237674f0
finch-devel-2.6.2-2.el4.ppc.rpm
File outdated by:  RHSA-2010:0788
    MD5: 1e935743315171437b01bb73696aa899
libpurple-2.6.2-2.el4.ppc.rpm
File outdated by:  RHSA-2010:0788
    MD5: c59835176cf9007967a1148f9687227e
libpurple-devel-2.6.2-2.el4.ppc.rpm
File outdated by:  RHSA-2010:0788
    MD5: 3c919d95930a83c0306f9a1db71b0e95
libpurple-perl-2.6.2-2.el4.ppc.rpm
File outdated by:  RHSA-2010:0788
    MD5: f866717403746758e7086986d601340d
libpurple-tcl-2.6.2-2.el4.ppc.rpm
File outdated by:  RHSA-2010:0788
    MD5: 02626aa1f72d41718ed4ab198763fd89
pidgin-2.6.2-2.el4.ppc.rpm
File outdated by:  RHSA-2010:0788
    MD5: a10cca56b9ea850a6598f390a7eb3b48
pidgin-devel-2.6.2-2.el4.ppc.rpm
File outdated by:  RHSA-2010:0788
    MD5: b33f8d2158ea162b680a9f3221c0524a
pidgin-perl-2.6.2-2.el4.ppc.rpm
File outdated by:  RHSA-2010:0788
    MD5: e1b7352cfbdd71397fe8f4a7316d229d
 
x86_64:
finch-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2010:0788
    MD5: 4c4ad4733364d35e0505b7c6a44e072f
finch-devel-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2010:0788
    MD5: 78585cac35c7570487bfe6c32683c803
libpurple-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2010:0788
    MD5: 37100a06938af163d62bf3365bcef6b9
libpurple-devel-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2010:0788
    MD5: d6b46fb6fee5750ea18091eceae38582
libpurple-perl-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2010:0788
    MD5: 82a02682645ea1b331ca5464ed2adea1
libpurple-tcl-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2010:0788
    MD5: 87b6ba72676033db8ff9020fce5ddd2d
pidgin-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2010:0788
    MD5: 6e9f2e54e1700fea17f08710952e5369
pidgin-devel-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2010:0788
    MD5: f05a2b3ef0b5993d908ceabb1333afd4
pidgin-perl-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2010:0788
    MD5: 1e08877d9d9dbac5ed9dcadebcfc3bd2
 
Red Hat Enterprise Linux Desktop (v. 5 client)

SRPMS:
pidgin-2.6.2-2.el5.src.rpm
File outdated by:  RHBA-2010:0176
    MD5: f792af1e73dfc4551ec0f1ed7cd403a2
 
IA-32:
finch-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2014:0139
    MD5: 7080693878fe867dc4c5653da02dce50
libpurple-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2014:0139
    MD5: 6296cc361375035ebf28c2eb935160c0
libpurple-perl-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2014:0139
    MD5: 2ad1a927fdc7970b100a9b03003d650b
libpurple-tcl-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2014:0139
    MD5: 8eeb9a80119cfa59460418038d0b17cd
pidgin-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2014:0139
    MD5: 937bec32acdf92b746b4759938090a1a
pidgin-perl-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2014:0139
    MD5: b749b7faf85ae826c6bcaaf9caaf2bd5
 
x86_64:
finch-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2014:0139
    MD5: 7080693878fe867dc4c5653da02dce50
finch-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHSA-2014:0139
    MD5: 1bb46db4c34cff02d476b19826049a89
libpurple-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2014:0139
    MD5: 6296cc361375035ebf28c2eb935160c0
libpurple-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHSA-2014:0139
    MD5: f363c06a3575cb611f3d6a5ee0994599
libpurple-perl-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHSA-2014:0139
    MD5: 9c1139b345031578da49e73a66c257f0
libpurple-tcl-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHSA-2014:0139
    MD5: be502cab2b0b84c190c4dc8f98d01536
pidgin-2.6.2-2.el5.i386.rpm
File outdated by:  RHSA-2014:0139
    MD5: 937bec32acdf92b746b4759938090a1a
pidgin-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHSA-2014:0139
    MD5: ee8836c7faf9523f7ef5845e864e4899
pidgin-perl-2.6.2-2.el5.x86_64.rpm
File outdated by:  RHSA-2014:0139
    MD5: 94414fc8b00ab4fd1095690f6f9b8c05
 
Red Hat Enterprise Linux ES (v. 4)

SRPMS:
pidgin-2.6.2-2.el4.src.rpm
File outdated by:  RHSA-2011:1820
    MD5: 93e09ec051c73f416539c514f55dff2d
 
IA-32:
finch-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: c688128ba022fd033bd4439699338164
finch-devel-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: 3dedaa854cd45b21d131e3f23b5fb30d
libpurple-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: bab06daf303a8a76fd0e90f91a327c3d
libpurple-devel-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: e9cc8198e90e021d00cb363ca8a3ed3b
libpurple-perl-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: 14ddf722aff72c4da6d44b89d38746c5
libpurple-tcl-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: ed49de3ebe5198ce0d87e410421903e0
pidgin-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: ecd8a58803384d38e740a71e00793085
pidgin-devel-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: c2a341d28f0ff823af1a4caece709a22
pidgin-perl-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: fdb3c763e30466679324ea7a7736ce45
 
IA-64:
finch-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 636ff202a25a2677ddcfc6f1b4ebd026
finch-devel-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 9ea49e9a1b973040af8e570644f6965d
libpurple-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: b98b527bca06f621696a8bc97f9aceaf
libpurple-devel-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 96435afd0a6ffe05e093133eccc465de
libpurple-perl-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 4de4ea128ee7f1e8de4d79f9518a39a5
libpurple-tcl-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 8ce2c9bc38af363f8ecb9880a6403240
pidgin-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 10b1ee1e046a0bc58c20d390a529c261
pidgin-devel-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: d9dd5fe181d3b962db132cbb2d11b00d
pidgin-perl-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: d2075526c86e049bab77122c6dda1160
 
x86_64:
finch-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 4c4ad4733364d35e0505b7c6a44e072f
finch-devel-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 78585cac35c7570487bfe6c32683c803
libpurple-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 37100a06938af163d62bf3365bcef6b9
libpurple-devel-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: d6b46fb6fee5750ea18091eceae38582
libpurple-perl-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 82a02682645ea1b331ca5464ed2adea1
libpurple-tcl-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 87b6ba72676033db8ff9020fce5ddd2d
pidgin-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 6e9f2e54e1700fea17f08710952e5369
pidgin-devel-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: f05a2b3ef0b5993d908ceabb1333afd4
pidgin-perl-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 1e08877d9d9dbac5ed9dcadebcfc3bd2
 
Red Hat Enterprise Linux ES (v. 4.8.z)

SRPMS:
pidgin-2.6.2-2.el4.src.rpm
File outdated by:  RHSA-2011:1820
    MD5: 93e09ec051c73f416539c514f55dff2d
 
IA-32:
finch-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2010:0788
    MD5: c688128ba022fd033bd4439699338164
finch-devel-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2010:0788
    MD5: 3dedaa854cd45b21d131e3f23b5fb30d
libpurple-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2010:0788
    MD5: bab06daf303a8a76fd0e90f91a327c3d
libpurple-devel-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2010:0788
    MD5: e9cc8198e90e021d00cb363ca8a3ed3b
libpurple-perl-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2010:0788
    MD5: 14ddf722aff72c4da6d44b89d38746c5
libpurple-tcl-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2010:0788
    MD5: ed49de3ebe5198ce0d87e410421903e0
pidgin-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2010:0788
    MD5: ecd8a58803384d38e740a71e00793085
pidgin-devel-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2010:0788
    MD5: c2a341d28f0ff823af1a4caece709a22
pidgin-perl-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2010:0788
    MD5: fdb3c763e30466679324ea7a7736ce45
 
IA-64:
finch-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2010:0788
    MD5: 636ff202a25a2677ddcfc6f1b4ebd026
finch-devel-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2010:0788
    MD5: 9ea49e9a1b973040af8e570644f6965d
libpurple-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2010:0788
    MD5: b98b527bca06f621696a8bc97f9aceaf
libpurple-devel-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2010:0788
    MD5: 96435afd0a6ffe05e093133eccc465de
libpurple-perl-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2010:0788
    MD5: 4de4ea128ee7f1e8de4d79f9518a39a5
libpurple-tcl-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2010:0788
    MD5: 8ce2c9bc38af363f8ecb9880a6403240
pidgin-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2010:0788
    MD5: 10b1ee1e046a0bc58c20d390a529c261
pidgin-devel-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2010:0788
    MD5: d9dd5fe181d3b962db132cbb2d11b00d
pidgin-perl-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2010:0788
    MD5: d2075526c86e049bab77122c6dda1160
 
x86_64:
finch-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2010:0788
    MD5: 4c4ad4733364d35e0505b7c6a44e072f
finch-devel-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2010:0788
    MD5: 78585cac35c7570487bfe6c32683c803
libpurple-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2010:0788
    MD5: 37100a06938af163d62bf3365bcef6b9
libpurple-devel-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2010:0788
    MD5: d6b46fb6fee5750ea18091eceae38582
libpurple-perl-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2010:0788
    MD5: 82a02682645ea1b331ca5464ed2adea1
libpurple-tcl-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2010:0788
    MD5: 87b6ba72676033db8ff9020fce5ddd2d
pidgin-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2010:0788
    MD5: 6e9f2e54e1700fea17f08710952e5369
pidgin-devel-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2010:0788
    MD5: f05a2b3ef0b5993d908ceabb1333afd4
pidgin-perl-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2010:0788
    MD5: 1e08877d9d9dbac5ed9dcadebcfc3bd2
 
Red Hat Enterprise Linux WS (v. 4)

SRPMS:
pidgin-2.6.2-2.el4.src.rpm
File outdated by:  RHSA-2011:1820
    MD5: 93e09ec051c73f416539c514f55dff2d
 
IA-32:
finch-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: c688128ba022fd033bd4439699338164
finch-devel-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: 3dedaa854cd45b21d131e3f23b5fb30d
libpurple-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: bab06daf303a8a76fd0e90f91a327c3d
libpurple-devel-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: e9cc8198e90e021d00cb363ca8a3ed3b
libpurple-perl-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: 14ddf722aff72c4da6d44b89d38746c5
libpurple-tcl-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: ed49de3ebe5198ce0d87e410421903e0
pidgin-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: ecd8a58803384d38e740a71e00793085
pidgin-devel-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: c2a341d28f0ff823af1a4caece709a22
pidgin-perl-2.6.2-2.el4.i386.rpm
File outdated by:  RHSA-2011:1820
    MD5: fdb3c763e30466679324ea7a7736ce45
 
IA-64:
finch-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 636ff202a25a2677ddcfc6f1b4ebd026
finch-devel-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 9ea49e9a1b973040af8e570644f6965d
libpurple-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: b98b527bca06f621696a8bc97f9aceaf
libpurple-devel-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 96435afd0a6ffe05e093133eccc465de
libpurple-perl-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 4de4ea128ee7f1e8de4d79f9518a39a5
libpurple-tcl-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 8ce2c9bc38af363f8ecb9880a6403240
pidgin-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 10b1ee1e046a0bc58c20d390a529c261
pidgin-devel-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: d9dd5fe181d3b962db132cbb2d11b00d
pidgin-perl-2.6.2-2.el4.ia64.rpm
File outdated by:  RHSA-2011:1820
    MD5: d2075526c86e049bab77122c6dda1160
 
x86_64:
finch-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 4c4ad4733364d35e0505b7c6a44e072f
finch-devel-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 78585cac35c7570487bfe6c32683c803
libpurple-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 37100a06938af163d62bf3365bcef6b9
libpurple-devel-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: d6b46fb6fee5750ea18091eceae38582
libpurple-perl-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 82a02682645ea1b331ca5464ed2adea1
libpurple-tcl-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 87b6ba72676033db8ff9020fce5ddd2d
pidgin-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 6e9f2e54e1700fea17f08710952e5369
pidgin-devel-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: f05a2b3ef0b5993d908ceabb1333afd4
pidgin-perl-2.6.2-2.el4.x86_64.rpm
File outdated by:  RHSA-2011:1820
    MD5: 1e08877d9d9dbac5ed9dcadebcfc3bd2
 
(The unlinked packages above are only available from the Red Hat Network)

Bugs fixed (see bugzilla for more information)

519224 - CVE-2009-3026 pidgin: ignores SSL/TLS requirements with old jabber servers
521823 - CVE-2009-2703 Pidgin: NULL pointer dereference by handling IRC topic(s) (DoS)
521832 - CVE-2009-3083 Pidgin: NULL pointer dereference by processing incomplete MSN SLP invite (DoS)
521853 - CVE-2009-3085 Pidgin: NULL pointer dereference by processing a custom smiley (DoS)


References



These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from:
https://www.redhat.com/security/team/key/#package

The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/