CVE-2016-9928
MCabber before 1.0.4 is vulnerable to roster push attacks, which allows remote attackers to intercept communications, or add themselves as an entity on a 3rd party’s roster as another user, which will also garner associated privileges, via crafted XMPP packets.
Date published : 2020-02-06
http://lists.opensuse.org/opensuse-updates/2017-01/msg00130.html
https://bitbucket.org/McKael/mcabber-crew/commits/6e1ead98930d7dd0a520ad17c720ae4908429033/raw
