Summary: | www-apps/roundup < 1.4.4 XSS security issues (CVE-2008-1474) | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Luca Barbato <lu_zero> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | minor | CC: | web-apps |
Priority: | High | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | http://pypi.python.org/pypi/roundup | ||
Whiteboard: | B4 [noglsa] | ||
Package list: | Runtime testing required: | --- |
Description
Luca Barbato
![]() in cvs, please stabilize Sparc stable. Quick test using roundup-demo went as expected. x86 stable ppc stable, ready for glsa voting. amd64 stable, too and now it's really ready for glsa. Fixed in release snapshot. Ready for vote. I vote NO. NO too, and closing. Did anyone actually check what the vulnerability was? can someone please add CVE-2008-1474 to the topic? Just for reference, Debian reported these as Cross-site scripting. |