Gentoo Linux users who are using net-im/gaim-0.59 and earlier are advised to upgrade their systems using the following: emerge rsync emerge gaim emerge clean HP has released an advisory for HP Secure OS Software for Linux Release 1.0. Users are advised to apply the fixes provided in the attached Red Hat advisory (RHSA-2002:189-08) to address this problem with systems running HP Secure OS Software for Linux. FreeBSD has released upgrades. Users are advised to upgrade their Ports collection and reinstall the affected port. The following fixes are available: Rob Flynn Gaim 0.51
Gaim contains a flaw that may allow a malicious user to induce a Gaim client to process shell metacharacters. The issue is triggered when the 'Manual' browser command fails to validate user suplied input. It is possible that the flaw may allow remote command execution on the client system, resulting in a loss of integrity.
Upgrade to version 0.59.1 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.