Upstream information
CVE-2009-0499 at MITRE
Description
Cross-site request forgery (CSRF) vulnerability in the forum code in Moodle 1.7 before 1.7.7, 1.8 before 1.8.8, and 1.9 before 1.9.4 allows remote attackers to delete unauthorized forum posts via a link or IMG tag to post.php.
Novell/SUSE information
Novell Bugzilla entry:
475111
SUSE Security Advisories:
List of released packages
| Product(s) | Fixed package version(s) | References |
| openSUSE 10.3 | moodle >= 1.8.2-17.12 moodle-af >= 1.8.2-17.12 moodle-ar >= 1.8.2-17.12 moodle-be >= 1.8.2-17.12 moodle-bg >= 1.8.2-17.12 moodle-bs >= 1.8.2-17.12 moodle-ca >= 1.8.2-17.12 moodle-cs >= 1.8.2-17.12 moodle-da >= 1.8.2-17.12 moodle-de >= 1.8.2-17.12 moodle-de_du >= 1.8.2-17.12 moodle-el >= 1.8.2-17.12 moodle-es >= 1.8.2-17.12 moodle-et >= 1.8.2-17.12 moodle-eu >= 1.8.2-17.12 moodle-fa >= 1.8.2-17.12 moodle-fi >= 1.8.2-17.12 moodle-fr >= 1.8.2-17.12 moodle-ga >= 1.8.2-17.12 moodle-gl >= 1.8.2-17.12 moodle-he >= 1.8.2-17.12 moodle-hi >= 1.8.2-17.12 moodle-hr >= 1.8.2-17.12 moodle-hu >= 1.8.2-17.12 moodle-id >= 1.8.2-17.12 moodle-is >= 1.8.2-17.12 moodle-it >= 1.8.2-17.12 moodle-ja >= 1.8.2-17.12 moodle-ka >= 1.8.2-17.12 moodle-km >= 1.8.2-17.12 moodle-kn >= 1.8.2-17.12 moodle-ko >= 1.8.2-17.12 moodle-lt >= 1.8.2-17.12 moodle-lv >= 1.8.2-17.12 moodle-mi_tn >= 1.8.2-17.12 moodle-ms >= 1.8.2-17.12 moodle-nl >= 1.8.2-17.12 moodle-nn >= 1.8.2-17.12 moodle-no >= 1.8.2-17.12 moodle-pl >= 1.8.2-17.12 moodle-pt >= 1.8.2-17.12 moodle-ro >= 1.8.2-17.12 moodle-ru >= 1.8.2-17.12 moodle-sk >= 1.8.2-17.12 moodle-sl >= 1.8.2-17.12 moodle-so >= 1.8.2-17.12 moodle-sq >= 1.8.2-17.12 moodle-sr >= 1.8.2-17.12 moodle-sv >= 1.8.2-17.12 moodle-th >= 1.8.2-17.12 moodle-tl >= 1.8.2-17.12 moodle-tr >= 1.8.2-17.12 moodle-uk >= 1.8.2-17.12 moodle-vi >= 1.8.2-17.12 moodle-zh_cn >= 1.8.2-17.12
| |