Git-Url: 
http://git.frugalware.org/gitweb/gitweb.cgi?p=homepage-ng.git;a=commitdiff;h=fb106a033e7423260fd53cda4756786701031155

commit fb106a033e7423260fd53cda4756786701031155
Author: Miklos Vajna <vmik...@frugalware.org>
Date:   Fri Apr 29 12:32:38 2011 +0200

FSA718-wordpress

diff --git a/frugalware/xml/security.xml b/frugalware/xml/security.xml
index 0543b8a..83d162a 100644
--- a/frugalware/xml/security.xml
+++ b/frugalware/xml/security.xml
@@ -26,6 +26,19 @@

<fsas>
<fsa>
+               <id>718</id>
+               <date>2011-04-29</date>
+               <author>Miklos Vajna</author>
+               <package>wordpress</package>
+               <vulnerable>3.1.1-1nexon1</vulnerable>
+               <unaffected>3.1.2-1nexon1</unaffected>
+               <bts>http://bugs.frugalware.org/task/4478</bts>
+               <cve>No CVE references, see 
http://codex.wordpress.org/Version_3.1.2</cve>
+               <desc>A security issue has been reported in WordPress, which 
can be exploited by malicious users to bypass certain security restrictions.
+                       The security issue is caused due to 
wp-admin/press-this.php script not properly checking a user's permissions 
before publishing posts and can be exploited by users without the 
"publish_posts" permission.
+                       Successful exploitation requires "Contributor-level" 
privileges.</desc>
+       </fsa>
+       <fsa>
<id>717</id>
<date>2011-04-20</date>
<author>Miklos Vajna</author>
_______________________________________________
Frugalware-git mailing list
Frugalware-git@frugalware.org
http://frugalware.org/mailman/listinfo/frugalware-git

Reply via email to