Summary: | <www-apps/redmine-4.1.2: XSS in issue titles (CVE-2021-29274) | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Sam James <sam> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | trivial | CC: | azamat.hackimov, proxy-maint |
Priority: | Normal | Keywords: | PullRequest |
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | https://redmine.org/issues/33846 | ||
See Also: | https://github.com/gentoo/gentoo/pull/20145 | ||
Whiteboard: | ~4 [noglsa] | ||
Package list: | Runtime testing required: | --- |
Description
Sam James
![]() ![]() ![]() ![]() Post to oss-security: https://www.openwall.com/lists/oss-security/2020/11/19/4 The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=5fcdd4cb5e8fdb1ecd2c3cd4138b8b004d30ea1e commit 5fcdd4cb5e8fdb1ecd2c3cd4138b8b004d30ea1e Author: Azamat H. Hackimov <azamat.hackimov@gmail.com> AuthorDate: 2021-03-27 13:45:13 +0000 Commit: Joonas Niilola <juippis@gentoo.org> CommitDate: 2021-04-09 12:20:56 +0000 www-apps/redmine: update to 4.1.2 Bug: https://bugs.gentoo.org/755836 Closes: https://bugs.gentoo.org/778275 Package-Manager: Portage-3.0.13, Repoman-3.0.2 Signed-off-by: Azamat H. Hackimov <azamat.hackimov@gmail.com> Signed-off-by: Joonas Niilola <juippis@gentoo.org> www-apps/redmine/Manifest | 1 + www-apps/redmine/redmine-4.1.2.ebuild | 231 ++++++++++++++++++++++++++++++++++ 2 files changed, 232 insertions(+) Thanks! All done. |