View Single Post
Ensign
Join Date: Jun 2012
Posts: 5
# 444
01-30-2014, 08:49 AM
Pidgin 2.10.8 does not work with out of game chat via XMMP.

This has been reported to the Pidgin team.


Some XMMP changes that are new in Pidgin 2.10.8 are:

Prevent spoofing of iq replies by verifying that the 'from' address matches the 'to' address of the iq request. (Discovered by Fabian Yamaguchi and Christian Wressnegger of the University of Goettingen, fixed by Thijs Alkemade) (CVE-2013-6483)
Fix crash on some systems when receiving fake delay timestamps with extreme values. (Discovered by Jaime Breva Ribes) (CVE-2013-6477)

Last edited by thisisthedoctor; 01-30-2014 at 08:01 PM. Reason: Included changelog notes for Pidgin 2.10.8 related to XMMP