[Bug 348858] Re: CVE-2009-0737 Multiple cross-site scripting (XSS) vulnerabilities in the web-based installer (config/index.php)

Launchpad Bug Tracker 348858 at bugs.launchpad.net
Thu Mar 26 18:19:58 UTC 2009


This bug was fixed in the package mediawiki - 1:1.11.2-2ubuntu0.3

---------------
mediawiki (1:1.11.2-2ubuntu0.3) hardy-security; urgency=low

  * SECURITY UPDATE: Multiple cross-site scripting (XSS) vulnerabilities in
    the web-based installer (config/index.php). (LP: #348858)
    - CVE-2009-0737
    - debian/patches/CVE-2009-0737.patch
    - patch based on Debian patch
    - http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=514547
    - http://lists.wikimedia.org/pipermail/mediawiki-announce/2009-February/000083.html

 -- Andreas Wenning <awen at awen.dk>   Thu, 26 Mar 2009 09:55:33 +0100

-- 
CVE-2009-0737 Multiple cross-site scripting (XSS) vulnerabilities in the web-based installer (config/index.php)
https://bugs.launchpad.net/bugs/348858
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs at lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs




More information about the universe-bugs mailing list