Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Fedora Local Security Checks >> Fedora Core 2 2005-298: gaim


Vulnerability Assessment Details

Fedora Core 2 2005-298: gaim

Vulnerability Assessment Summary
Check for the version of the gaim package

Detailed Explanation for this Vulnerability Assessment

The remote host is missing the patch for the advisory FEDORA-2005-298 (gaim).

Gaim permits you to talk to anyone using a variety of messaging
protocols, including AIM (Oscar and TOC), ICQ, IRC, Yahoo!,
MSN Messenger, Jabber, Gadu-Gadu, Napster, and Zephyr. These
protocols are implemented using a modular, easy to use design.
To use a protocol, just add an account using the account editor.

Gaim supports many common features of other clients, as well as many
unique features, such as perl scripting and C tests.

Gaim is NOT affiliated with or endorsed by America Online, Inc.,
Microsoft Corporation, or Yahoo! Inc. or other messaging service
providers.

Update Information:

http://gaim.sourceforge.net/security/
http://gaim.sourceforge.net/ChangeLog
gaim-1.2.1 resolves CVE-2005-0965 and CVE-2005-0966 as well as some
crashes in the jabber and yahoo protocols. Read upstream's pages
above for more details.


Solution : http://www.fedoranews.org/blog/index.php?p=567
Network Security Threat Level: High

Networks Security ID:

Vulnerability Assessment Copyright: This script is Copyright (C) 2005 Tenable Network Security

Cables, Connectors

Juniper Networks SRX Series SRX1400 Services Gateway Chassis (SRX1400BASE-GE-AC)
$354.33
Juniper Networks SRX Series SRX1400 Services Gateway Chassis (SRX1400BASE-GE-AC) pictureJuniper Networks 40-Port Ethernet Switch w/ VIR (EX4500-40F-VC1-FB) - AS-IS
$354.33
Juniper Networks 40-Port Ethernet Switch w/ VIR (EX4500-40F-VC1-FB) - AS-IS pictureJuniper J6300-BASE-AC J-6300-BASE-AC J6300 Router
$199.0
Juniper J6300-BASE-AC J-6300-BASE-AC J6300 Router pictureJuniper Sonicwall Firewalls Srx210he Poe, Nsa 220. Tz 205
$120.0
Juniper Sonicwall Firewalls Srx210he Poe, Nsa 220. Tz 205 picture


Discussions

No Discussions have been posted on this vulnerability.