Another issue it highlights...
"The issue provides further evidence that users of alternative client software may remove themselves from the main line of attacks but not from the need to patch their systems."
That's not the only issue it highlights - because I'm so used to software automatically checking for updates, I was still using Pidgin 2.4.x . I hadn't even thought to manually check to see if there was a new version until I read this story. I'm not sure what the bigger problem is really - the fact that I'm now so conditioned to expect all software to check for updates that checking manually never occurred, or the fact that Pidgin doesn't check.
Nah, sod it. It's the developers fault. Where's the auto update functionality :p


