Bug#788306: [PKG-Openstack-devel] Bug#788306: horizon: CVE-2015-3219: XSS in Horizon Heat stack creation

2015-06-10 Thread GCS
On Wed, Jun 10, 2015 at 10:42 AM, Salvatore Bonaccorso car...@debian.org wrote: On Wed, Jun 10, 2015 at 09:10:56AM +0200, László Böszörményi (GCS) wrote: Just checked. The Wheezy version doesn't contain the vulnerable code segment, but the Jessie version does. Mark the bug accordingly. In

Bug#788306: [PKG-Openstack-devel] Bug#788306: horizon: CVE-2015-3219: XSS in Horizon Heat stack creation

2015-06-10 Thread GCS
Control: found -1 2014.1.3-1 Hi Salvatore, On Wed, Jun 10, 2015 at 7:37 AM, Salvatore Bonaccorso car...@debian.org wrote: Source: horizon Version: 2015.1.0-1 Severity: important Tags: security upstream fixed-upstream [...] CVE-2015-3219[0]: XSS in Horizon Heat stack creation [...] Please

Bug#788306: [PKG-Openstack-devel] Bug#788306: horizon: CVE-2015-3219: XSS in Horizon Heat stack creation

2015-06-10 Thread Salvatore Bonaccorso
Hey Lazlo, On Wed, Jun 10, 2015 at 09:10:56AM +0200, László Böszörményi (GCS) wrote: Control: found -1 2014.1.3-1 Hi Salvatore, On Wed, Jun 10, 2015 at 7:37 AM, Salvatore Bonaccorso car...@debian.org wrote: Source: horizon Version: 2015.1.0-1 Severity: important Tags: security