From a5bde43bb60c980387dd4e35a4520c248f52c9c9 Mon Sep 17 00:00:00 2001 From: Aldas Nabazas Date: Sat, 26 Apr 2008 18:36:59 +0200 Subject: [PATCH] [mailman] Updated (2.1.9 -> 2.1.10) : SECURITY - MEDIUM CVE-2008-0564 (Medium) : Multiple cross-site scripting (XSS) vulnerabilities in Mailman before 2.1.10b1 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors related to (1) editing templates and (2) the list's "info attribute" in the web administrator interface, a different vulnerability than CVE-2006-3636. --- mail/mailman/mailman.desc | 7 +++---- 1 file changed, 3 insertions(+), 4 deletions(-) diff --git a/mail/mailman/mailman.desc b/mail/mailman/mailman.desc index 9957a75c6..9c1861306 100644 --- a/mail/mailman/mailman.desc +++ b/mail/mailman/mailman.desc @@ -1,9 +1,8 @@ - [COPY] --- SDE-COPYRIGHT-NOTE-BEGIN --- [COPY] This copyright note is auto-generated by ./scripts/Create-CopyPatch. [COPY] [COPY] Filename: package/.../mailman/mailman.desc -[COPY] Copyright (C) 2006 The OpenSDE Project +[COPY] Copyright (C) 2006 - 2008 The OpenSDE Project [COPY] Copyright (C) 2004 - 2006 The T2 SDE Project [COPY] [COPY] More information can be found in the files COPYING and README. @@ -32,7 +31,7 @@ [L] GPL [S] Stable -[V] 2.1.9 +[V] 2.1.10 [P] X -----5---9 160.000 -[D] 468941791 mailman-2.1.9.tgz http://dl.sourceforge.net/sourceforge/mailman/ +[D] 3808022851 mailman-2.1.10.tgz http://dl.sourceforge.net/sourceforge/mailman/