Change logs for pidgin source package in Karmic

  • pidgin (1:2.6.2-1ubuntu7.3) karmic-security; urgency=low
    
      * SECURITY UPDATE: denial of service via custom emoticon
        - debian/patches/68_CVE-2010-1624.patch: make sure body is valid in
          libpurple/protocols/msn/slp.c.
        - CVE-2010-1624
      * SECURITY UPDATE: denial of service via base64 decoding (LP: #666998)
        - debian/patches/69_CVE-2010-3711.patch: correctly handle
          purple_base64_decode return codes in libpurple/ntlm.c,
          libpurple/plugins/perl/common/Util.xs,
          libpurple/protocols/{jabber/auth.c,msn/slp.c,myspace/message.c,
          oscar/clientlogin.c,qq/im.c,yahoo/libymsg.c}.
        - CVE-2010-3711
     -- Marc Deslauriers <email address hidden>   Wed, 03 Nov 2010 09:02:12 -0400
  • pidgin (1:2.6.2-1ubuntu7.2) karmic-security; urgency=low
    
      * SECURITY UPDATE: denial of service via malformed SLP message
        - debian/patches/65_security_CVE-2010-0277.patch: validate input in
          libpurple/protocols/msn/{slp.c,slpcall.c,slplink.c,slpmsg.h}.
        - CVE-2010-0277
      * SECURITY UPDATE: denial of service via certain nicknames in Finch
        - debian/patches/66_security_CVE-2010-0420.patch: properly unescape
          text in finch/libgnt/gnttree.c, libpurple/protocols/bonjour/parser.c,
          libpurple/protocols/jabber/parser.c, libpurple/xmlnode.c.
        - CVE-2010-0420
      * SECURITY UPDATE: denial of service via large number of smileys
        - debian/patches/67_security_CVE-2010-0423.patch: limit the number of
          smileys in pidgin/gtkimhtml.c.
        - CVE-2010-0423
     -- Marc Deslauriers <email address hidden>   Thu, 18 Feb 2010 13:44:53 -0500
  • pidgin (1:2.6.2-1ubuntu7.1) karmic-security; urgency=low
    
      * SECURITY UPDATE: denial of service via crafted contact list data
        - debian/patches/63_security_CVE-2009-3615.patch: validate contact
          list structure in libpurple/protocols/oscar/oscar.c.
        - CVE-2009-3615
      * SECURITY UPDATE: directory traversal via custom smiley request
        (LP: #501089)
        - debian/patches/64_security_CVE-2010-0013.patch: ignore request for
          smileys that don't exist in the image store in
          libpurple/protocols/msn/slp.c.
        - CVE-2010-0013
     -- Marc Deslauriers <email address hidden>   Thu, 14 Jan 2010 11:22:13 -0500
  • pidgin (1:2.6.2-1ubuntu7) karmic; urgency=low
    
      * Don't stick the buddy list window to all desktops as some
        window managers have trouble to properly unstick it (LP: #346840)
        - debian/patches/11_buddy_list_really_show.patch
      * Always use default tray icon size on KDE (LP: #209440)
        - debian/patches/62_tray_icon_size_kde.patch
      * Use scrollbars in the preferences dialog if the screen height is
        below 700 px instead of 600 px
        - debian/patches/60_1024x600_gtkprefs.c.patch
    
     -- Felix Geyer <email address hidden>   Fri, 09 Oct 2009 19:40:26 +0200
  • pidgin (1:2.6.2-1ubuntu6) karmic; urgency=low
    
      * Move the pidgin-libnotify recommends from libpurple0 to pidgin as this is
        a pidgin-specific plugin (calls pidgin_*()); ideally this plugin should be
        moved to a pidgin specific dir instead of /usr/lib/purple-2/, but
        /usr/lib/pidgin/ doesn't work.
      * Rename XS-Vcs-* to XS-Debian-Vcs-*.
    
     -- Loic Minier <email address hidden>   Sun, 27 Sep 2009 11:08:53 +0200
  • pidgin (1:2.6.2-1ubuntu5) karmic; urgency=low
    
      * debian/control:
        - Recommends pidgin-libnotify
    
     -- Sebastien Bacher <email address hidden>   Fri, 25 Sep 2009 17:22:36 +0200
  • pidgin (1:2.6.2-1ubuntu4) karmic; urgency=low
    
      * debian/pidgin.postinst:
        - use preinst rather and do some tweaking
    
      [ Ken VanDine ]
      * debian/rules:
        - Moved the indicator launcher to /usr/share (LP: #434097)
      * debian/pidgin.postinst:
        - remove the old indicator from /etc and remove the directory
          if it is empty
    
     -- Sebastien Bacher <email address hidden>   Fri, 25 Sep 2009 00:06:24 +0200
  • pidgin (1:2.6.2-1ubuntu3) karmic; urgency=low
    
      * debian/rules:
        - install a launcher in the message indicator (lp: #424490)
    
     -- Sebastien Bacher <email address hidden>   Mon, 14 Sep 2009 16:51:03 +0200
  • pidgin (1:2.6.2-1ubuntu2) karmic; urgency=low
    
      * debian/patches/61_proxy_settings.patch:
        - Use gnome-network-properties instead of gnome-network-preferences.
    
     -- Artur Rona <email address hidden>   Sun, 06 Sep 2009 17:21:44 +0200
  • pidgin (1:2.6.2-1ubuntu1) karmic; urgency=low
    
      * New version sync on debian
    
     -- Sebastien Bacher <email address hidden>   Mon, 07 Sep 2009 18:27:38 +0200
  • pidgin (1:2.6.1-2ubuntu1) karmic; urgency=low
    
      * Merge with Debian unstable (LP: #415908), remaining changes:
        + debian/prefs.xml: Update to set the notify plugin prefs
          /plugins/gtk/X11/notify/*, set /pidgin/plugins/loaded to load
          the notify plugin and enable the standard logging options by default
        + 02_lpi.patch for LP integration. Add liblaunchpad-integration-dev to
          build-deps for this
        + 04_let_crasher_for_apport.patch to stop catching the SIGSEGV signal
          and let apport handle it
        + 05_default_to_irc_ubuntu_com.patch to set the default IRC
          server to irc.ubuntu.com
        + 10_docklet_default_off.patch for default behavior to have no
          notification area icon.
        + 11_buddy_list_really_show.patch to make it so that the buddy
          list tries harder to appear.  This fixes some issues with it
          not appearing.
        + 13_sounds_and_timers.patch which adjusts the time out for sounds
          to be 15 seconds, which helps get fewer spurious login
          notifications on slow connections.
        + 60_1024x600_gtk*.c.patch: Add scrollbars into preferences and
          pounce dialogs
        + debian/libpurple0.symbols: Add epochs
        + Drop libpurple0 dependency from libpurple-bin
        + Drop pidgin-data dependency from libpurple0
      * Refresh 13_sounds_and_timers.patch: partly applied upstream
      * Update 60_1024x600_gtkprefs.c.patch: add scrollbars to additional tabs
      * Drop 60_1024x600_gtkaccount.c.patch, 99_autoreconf.patch:
        not needed anymore
      * Drop 73_upstream_change_fix_high_dpi_status_msg.patch: applied upstream
      * Remove libgnt symbols from debian/libpurple0.symbols
    
     -- Felix Geyer <email address hidden>   Wed, 02 Sep 2009 13:42:04 +0200
  • pidgin (1:2.5.8-1ubuntu2) karmic; urgency=low
    
      * Drop pidgin-data dependency from libpurple0. pidgin itself pulls it in,
        and empathy brings its own set of icons. This saves us more than 1 MB on
        the CDs.
    
     -- Martin Pitt <email address hidden>   Tue, 21 Jul 2009 10:18:17 +0200
  • pidgin (1:2.5.8-1ubuntu1) karmic; urgency=low
    
      * Merge with Debian unstable (LP: #393736), remaining changes:
        + debian/prefs.xml: Update to set the notify plugin prefs
          /plugins/gtk/X11/notify/*, set /pidgin/plugins/loaded to load
          the notify plugin and enable the standard logging options by default
        + 02_lpi.patch for LP integration. Add liblaunchpad-integration-dev to
          build-deps for this
        + 04_let_crasher_for_apport.patch to stop catching the SIGSEGV signal
          and let apport handle it
        + 05_default_to_irc_ubuntu_com.patch to set the default IRC
          server to irc.ubuntu.com
        + 10_docklet_default_off.patch for default behavior to have no
          notification area icon.
        + 11_buddy_list_really_show.patch to make it so that the buddy
          list tries harder to appear.  This fixes some issues with it
          not appearing.
        + 13_sounds_and_timers.patch which adjusts the time out for sounds
          to be 15 seconds, which helps get fewer spurious login
          notifications on slow connections.  Also, switches a few long
          term timers to _add_seconds to get a little bit of power savings.
        + 60_1024x600_gtk*.c.patch: Add scrolled bars into account dialog,
        + 73_upstream_change_fix_high_dpi_status_msg.patch: upstream change to
          stop the clipping of the infopane text when using high DPI
          pounce windows and preference window when screen height is less than 600.
        + Add nm-dev to build-deps to enable NM integration. Remove --disable-nm
          from configure line to enable this support.
        + debian/libpurple0.symbols: Add libgdl & epochs
        + debian/control: Remove libpurple0 from deps of libpurple-bin
      * Also fixes Yahoo! connection problems
      * 99_autoconf: Drop, do full autoreconf in 99_autoreconf; autofoo related build
        failures without this
    
     -- Iain Lane <email address hidden>   Wed, 01 Jul 2009 10:27:14 +0100
  • pidgin (1:2.5.7-1ubuntu1) karmic; urgency=low
    
      * Merge with Debian unstable (LP: #390249, #390297), remaining changes:
        - Update debian/prefs.xml to set the notify plugin prefs
          /plugins/gtk/X11/notify/*, set /pidgin/plugins/loaded to load
          the notify plugin and enable the standard logging options by default
        + 02_lpi.patch for LP integration. Add liblaunchpad-integration-dev to
          build-deps for this
        + 04_let_crasher_for_apport.patch to stop catching the SIGSEGV signal
          and let apport handle it
        + 05_default_to_irc_ubuntu_com.patch to set the default IRC
          server to irc.ubuntu.com
        + 10_docklet_default_off.patch for default behavior to have no
          notification area icon.
        + 11_buddy_list_really_show.patch to make it so that the buddy
          list tries harder to appear.  This fixes some issues with it
          not appearing.
        + 13_sounds_and_timers.patch which adjusts the time out for sounds
          to be 15 seconds, which helps get fewer spurious login
          notifications on slow connections.  Also, switches a few long
          term timers to _add_seconds to get a little bit of power savings.
        + 60_1024x600_gtk*.c.patch: Add scrolled bars into account dialog,
        + 73_upstream_change_fix_high_dpi_status_msg.patch: upstream change to
          stop the clipping of the infopane text when using high DPI
          pounce windows and preference window when screen height is less than 600.
        + Add nm-dev to build-deps to enable NM integration. Remove --disable-nm
          from configure line.
        + debian/libpurple0.symbols: Add libgdl & epochs
        + debian/control: Remove libpurple0 from deps of libpurple-bin
      * Also fixes Yahoo! connection problems (LP: #389322)
      * debian/libpurple0.symbols: Update
      * 99_autoconf: Refresh
    
     -- Iain Lane <email address hidden>   Mon, 22 Jun 2009 17:14:29 +0100
  • pidgin (1:2.5.6-1ubuntu2) karmic; urgency=low
    
      * Add 73_upstream_change_fix_high_dpi_status_msg.patch:
        - upstream change to stop the clipping of the infopane text when using
          high DPI (LP: #378710)
    
     -- Dominic Evans <email address hidden>   Mon, 15 Jun 2009 12:28:48 +0200
  • pidgin (1:2.5.6-1ubuntu1) karmic; urgency=low
    
      * Merge from debian, remaining changes (LP: #380806 ):
        - Update debian/prefs.xml to set the notify plugin prefs
          /plugins/gtk/X11/notify/*, set /pidgin/plugins/loaded to load
          the notify plugin and enable the standard logging options by default
        - debian/patches:
          + 02_lpi.patch for LP integration
          + 04_let_crasher_for_apport.patch to stop catching the SIGSEGV signal
            and let apport handle it
          + 05_default_to_irc_ubuntu_com.patch to set the default IRC
            server to irc.ubuntu.com
          + 10_docklet_default_off.patch for default behavior to have no
            notification area icon.  This fixes (LP: #340366)
          + 11_buddy_list_really_show.patch to make it so that the buddy
            list tries harder to appear.  This fixes some issues with it
            not appearing.  (LP: #341142)
          + 12_rate_limit_aim_blist_warning.patch to rate limit popups when
            AIM buddy list is unavailable (LP: #345774)
          + 13_sounds_and_timers.patch which adjusts the time out for sounds
            to be 15 seconds, which helps get fewer spurious login
            notifications on slow connections.  Also, switches a few long
            term timers to _add_seconds to get a little bit of power savings.
            (LP: #345494)
          + 60_1024x600_gtk*.c.patch: Add scrolled bars into account dialog,
            pounce windows and preference window when screen height is less than 600.
          + 70_autoconf.patch
        - debian/control:
          + Drop the libpurple0 dependency on libpurple-bin
          + Add Build-Deps on liblaunchpad-integration-dev, intltool,
          network-manager-dev
          + Make finch conflict & replace old versions of gaim (closes: #440351)
          + Add epoch in dependencies
        - debian/libpurple0.symbols:
          + Add libgnt to symbols
          + Add epoch to versions
        - debian/pidgin-dbg.preinst, debian/pidgin-dev.preinst,
          debian/pidgin.preinst: Add epoch
        - debian/rules:
          + remove --disable-nm as nm has been fixed in Ubuntu
          + Add X-Ubuntu-Gettext-Domain to the desktop file and update the
            translation templates in common-install-impl::
    
     -- Nick Andrik <email address hidden>   Wed, 27 May 2009 02:23:16 +0200
  • pidgin (1:2.5.5-1ubuntu8) jaunty; urgency=low
    
      * debian/patches/72_upstream_change_fix_jabber_crasher.patch:
        - upstream change to fix crash on jabber when using a custom image
          (lp: #357949)
    
     -- Sebastien Bacher <email address hidden>   Thu, 09 Apr 2009 18:12:03 +0200