pkgsrc/chat/gaim
recht 3805856b73 12 vulnerabilities were found in the instant messenger GAIM that allow remote compromise.
The 12 identified problems range from simple standard stack overflows, over heap overflows to an integer overflow that can be abused to cause a heap overflow. Due to the nature of instant messaging some of these bugs require man-in-the-middle attacks between client and server. But the underlying protocols are easy to implement and MIM attacks on ordinary TCP sessions is afairly simple task.

Please see http://security.e-matters.de/advisories/012004.html
for more details.

Apply the fix posted in that advisory (originally by the FreeBSD security
team) and bump PKGREVISION to 1.
2004-01-27 01:24:51 +00:00
..
patches 12 vulnerabilities were found in the instant messenger GAIM that allow remote compromise. 2004-01-27 01:24:51 +00:00
DESCR Drop trailing whitespace. Ok'ed by wiz. 2003-05-06 17:40:18 +00:00
distinfo 12 vulnerabilities were found in the instant messenger GAIM that allow remote compromise. 2004-01-27 01:24:51 +00:00
Makefile 12 vulnerabilities were found in the instant messenger GAIM that allow remote compromise. 2004-01-27 01:24:51 +00:00
PLIST Update to 0.75, based on patch from Matthew Luckie (maintainer): 2004-01-11 20:54:07 +00:00