Package: phpbb3
Version: 3.0.12-3
Severity: important
Tags: security, fixed-upstream, upstream

CVE request: http://www.openwall.com/lists/oss-security/2015/01/31/2

https://wiki.phpbb.com/Release_Highlights/3.0.13

https://tracker.phpbb.com/browse/PHPBB3-13531
https://github.com/phpbb/phpbb/pull/3316
"CSS Injection via Relative Path Overwrite. Thanks to James Kettle for bringing
this to our attention"

https://tracker.phpbb.com/browse/PHPBB3-13526
https://github.com/phpbb/phpbb/pull/3311
"The ucp_pm_options form key is now properly validated. Thanks to FBNeal and
lampsys who reported this independently."

-- 
Henri Salo


-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to