_______________________________________________________________________
Package : libgadu
Date : August 20, 2009
Affected: 2008.1, 2009.0, Enterprise Server 5.0
_______________________________________________________________________
Problem Description:
A vulnerability has been found and corrected in libgadu:
libgadu before 1.8.2 allows remote servers to cause a denial of service
(crash) via a contact description with a large length, which triggers
a buffer over-read (CVE-2008-4776).
This update provides a solution to this vulnerability.
_______________________________________________________________________
References:
http://cve.mitre.org/cgi-bin/cvename.cg ... -2008-4776
_______________________________________________________________________