/[advisories]/20463.adv
ViewVC logotype

Contents of /20463.adv

Parent Directory Parent Directory | Revision Log Revision Log


Revision 5516 - (show annotations) (download)
Mon Mar 27 21:13:30 2017 UTC (7 years, 1 month ago) by neoclust
File size: 530 byte(s)
MGASA-2017-0092: roundcubemail-1.0.9-1.2.mga5
1 type: security
2 subject: Updated roundcubemail package fixes security vulnerability
3 CVE:
4 - CVE-2017-6820
5 src:
6 5:
7 core:
8 - roundcubemail-1.0.9-1.2.mga5
9 description: |
10 rcube_utils.php in Roundcube before 1.1.8 and before 1.2.4 is
11 susceptible to a cross-site scripting vulnerability via a crafted
12 Cascading Style Sheets (CSS) token sequence within an SVG element
13 (CVE-2017-6820).
14 references:
15 - https://bugs.mageia.org/show_bug.cgi?id=20463
16 - http://openwall.com/lists/oss-security/2017/03/12/2
17 ID: MGASA-2017-0092

  ViewVC Help
Powered by ViewVC 1.1.30