Upstream information
Description
Cross-site scripting (XSS) vulnerability in the driver script in mailman before 2.1.5 allows remote attackers to inject arbitrary web script or HTML via a URL, which is not properly escaped in the resulting error page.NVD CVSS v2 Base Score: 4.3 (AV:N/AC:M/Au:N/C:N/I:P/A:N)
Novell/SUSE information
Novell Bugzilla entries: 133692, 64468, 65100, 86985 SUSE Security Advisories:- SUSE-SA:2005:007, published Monday, Feb 14th 2005 10:30 MET
- SUSE-SR:2005:002, published Wednesday, Jan 26th 2005 17:00 MEST
List of released packages
| Product(s) | Fixed package version(s) | References |
|---|---|---|
| Novell Linux Desktop 9 for x86 Novell Linux Desktop 9 for x86_64 Open Enterprise Server |
| suse91.s390 suse91.x86-64 suse91.ia64 suse91.ppc sles9-oes.x86 YOU Patch Nr: 10755 |
| SuSE Linux 9.0 for AMD64 SuSE Linux 9.0 for IA32 |
| |
| SUSE LINUX 9.1 for IA32 SUSE LINUX 9.1 for x86-64 |
| |
| SUSE LINUX 9.2 |
| |
| SUSE LINUX 9.3 |
|
