Debian Security Update DSA-3943 gajim - security update

LinuxBot

Member
Joined
Apr 25, 2017
Messages
5,787
Reaction score
74
Credits
-1,257
Gajim, a GTK+-based XMPP/Jabber client, unconditionally implements the "XEP-0146: Remote Controlling Clients" extension, allowing a malicious XMPP server to trigger commands to leak private conversations from encrypted sessions. With this update XEP-0146 support has been disabled by default and made opt-in via the remote_commands option.

Continue reading...
 


Follow Linux.org

Members online


Top