Bug 14334

Summary: CVE-2008-0564 Cross Site Scripting
Product: Sisyphus Reporter: Vladimir V. Kamarzin <vvk>
Component: mailmanAssignee: Konstantin A Lepikhov (L.A. Kostis) <lakostis>
Status: CLOSED FIXED QA Contact: qa-sisyphus
Severity: normal    
Priority: P2 CC: lakostis, ldv
Version: unstable   
Hardware: all   
OS: Linux   

Description Vladimir V. Kamarzin 2008-02-06 08:25:30 MSK
http://secunia.com/advisories/28794/
Comment 1 Michael Shigorin 2008-02-20 13:44:17 MSK
ping?
Comment 2 Vladimir V. Kamarzin 2008-02-25 10:08:32 MSK
В Sisyphus пофиксено, а что насчёт бранча?

mailman - Mailing list manager with built in web access
* Sat Feb 23 2008 Grigory Batalov <bga@altlinux> 5:2.1.10-alt0.3
- New upstream release (2.1.10 beta 3).
- Contains CVE-2008-0564 fix.
* Fri Mar 30 2007 Grigory Batalov <bga@altlinux> 5:2.1.9-alt6
Note: changelog entry for 5:2.1.9-alt6.1 not found.
Comment 3 Vladimir V. Kamarzin 2008-02-25 10:26:23 MSK
Ага, там тоже.