Fedora Legacy Test Update Notification: xchat

Marc Deslauriers marcdeslauriers at videotron.ca
Sun Jun 19 15:14:58 UTC 2005


---------------------------------------------------------------------
Fedora Legacy Test Update Notification
FEDORALEGACY-2005-123013
Bugzilla https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=123013
2005-06-19
---------------------------------------------------------------------

Name        : xchat
Versions    : fc1: xchat-2.0.7-1.FC1.1.legacy
Versions    : fc2: xchat-2.0.7-5.1.legacy
Summary     : A GTK+ IRC (chat) client.
Description :
X-Chat is an IRC client for the X Window System and GTK+. X-Chat is
fairly easy to use and includes a nice interface.

---------------------------------------------------------------------
Update Information:

X-Chat is a graphical IRC chat client for the X Window System.

A stack buffer overflow flaw was found in the X-Chat's Socks-5 proxy
code. An attacker could create a malicious Socks-5 proxy server in such
a way that X-Chat would execute arbitrary code if a victim configured
X-Chat to use the proxy.

Users of X-Chat should upgrade to this updated package which contains a
backported security patch and is not vulnerable to this issue.

---------------------------------------------------------------------
Changelogs

fc1:
* Sat Jun 11 2005 Marc Deslauriers <marcdeslauriers at videotron.ca>
1:2.0.7-1.FC1.1.legacy
- Added patch to fix CAN-2004-0409

fc2:
* Mon May 02 2005 Marc Deslauriers <marcdeslauriers at videotron.ca>
1:2.0.7-5.1.legacy
- Added patch to fix CAN-2004-0409

---------------------------------------------------------------------
This update can be downloaded from:
  http://download.fedoralegacy.org/
(sha1sums)

fc1:
949871bada73a7e47b412e04b296fb8e661a6889
fedora/1/updates-testing/i386/xchat-2.0.7-1.FC1.1.legacy.i386.rpm
e9defab76a100c3c066b85a9fa83ebcd1527ce71
fedora/1/updates-testing/SRPMS/xchat-2.0.7-1.FC1.1.legacy.src.rpm

fc2:
557e51ab8c91c4e824c132b4e58fc372ba6bf4c7
fedora/2/updates-testing/i386/xchat-2.0.7-5.1.legacy.i386.rpm
4e856255dd724c8364556e792c162b1f0fbc29ea
fedora/2/updates-testing/SRPMS/xchat-2.0.7-5.1.legacy.src.rpm

---------------------------------------------------------------------

Please test and comment in bugzilla.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 189 bytes
Desc: OpenPGP digital signature
URL: <http://listman.redhat.com/archives/fedora-legacy-list/attachments/20050619/6ebccc46/attachment.sig>


More information about the fedora-legacy-list mailing list