oss-sec mailing list archives

Re: CVE Request: mailman


From: Josh Bressers <bressers () redhat com>
Date: Mon, 13 Sep 2010 16:08:06 -0400 (EDT)


----- "Huzaifa Sidhpurwala" <huzaifas () redhat com> wrote:

Hi,

There are two mailman vulns. fixed by the following patch:
http://mail.python.org/pipermail/mailman-announce/2010-September/000151.html

Particular Red Hat Bugzilla entries are the following:

      https://bugzilla.redhat.com/show_bug.cgi?id=631881

CVE-2010-3089 mailman XSS via list information HTML template


      https://bugzilla.redhat.com/show_bug.cgi?id=631859

CVE-2010-3090 mailman XSS in list information overview

Thanks.

-- 
    JB


Current thread: