Login
Newsletter
Werbung

Sicherheit: Unerlaubte Rückrufe in Jabberd
Aktuelle Meldungen Distributionen
Name: Unerlaubte Rückrufe in Jabberd
ID: FEDORA-2012-12418
Distribution: Fedora
Plattformen: Fedora 18
Datum: Di, 18. September 2012, 13:27
Referenzen: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-3525
Applikationen: Jabberd

Originalnachricht

Name        : jabberd
Product : Fedora 18
Version : 2.2.17
Release : 1.fc18
URL : http://codex.xiaoka.com/wiki/jabberd2:start
Summary : OpenSource server implementation of the Jabber protocols
Description :
The jabberd project aims to provide an open-source server implementation of
the Jabber protocols for instant messaging and XML routing. The goal of this
project is to provide a scalable, reliable, efficient and extensible server
that provides a complete set of features and is up to date with the latest
protocol revisions.

jabberd2 is the next generation of the jabberd server. It has been
rewritten from the ground up to be scalable, architecturally sound, and to
support the latest protocol extensions coming out of the JSF.

This package defaults to use pam and sqlite.

-------------------------------------------------------------------------------
-
Update Information:

included patch for "Vulnerability in XMPP Server Dialback
Implementations"

http://xmpp.org/resources/security-notices/server-dialback/

fix for systemd scripts
-------------------------------------------------------------------------------
-
References:

[ 1 ] Bug #850872 - CVE-2012-3525 jabberd: Prone to unsolicited XMPP Dialback
attacks
https://bugzilla.redhat.com/show_bug.cgi?id=850872
-------------------------------------------------------------------------------
-

This update can be installed with the "yum" update program. Use
su -c 'yum update jabberd' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
-------------------------------------------------------------------------------
-
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce
Pro-Linux
Pro-Linux @Facebook
Neue Nachrichten
Werbung