Summary
The remote host is missing an update to gupnp-igd
announced via advisory FEDORA-2009-8804.
Solution
Apply the appropriate updates.
This update can be installed with the yum update program. Use su -c 'yum update gupnp-igd' at the command line.
For more information, refer to Managing Software with yum, available at http://docs.fedoraproject.org/yum/.
https://secure1.securityspace.com/smysecure/catid.html?in=FEDORA-2009-8804
Insight
Update Information:
pidgin upgrade to 2.6.0 for the CVE-2009-2694, insufficient input validation in msn_slplink_process_msg(). 2.6.0 has Voice and Video support via farsight2 (Fedora 11+ only) and numerous other bug fixes.
farsight2, libnice and gupnp-igd are version upgrades to make voice and video actually work on Fedora 11.
ChangeLog:
* Thu Aug 6 2009 Warren Togami - 0.1.3-3
- Fix macros that were there for no good reason.
* Fri Jul 24 2009 Fedora Release Engineering - 0.1.3-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_12_Mass_Rebuild
Severity
Classification
-
CVE CVE-2009-2694 -
CVSS Base Score: 10.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
Related Vulnerabilities