htdig (1:3.2.0b6-3ubuntu0.1) feisty-security; urgency=low
* SECURITY UPDATE: Cross-site scripting via crafted sort type. (LP: #172277)
* htsearch/Display.cc, libhtdig/ResultFetch.cc: Don't display the sort type
if it is unrecognised.
* References:
CVE-2007-6110
-- William Grant <[EMAIL PROTECTED]> Sat, 01 Dec 2007
18:31:46 +1100
--
[CVE-2007-6110] Cross-site scripting (XSS) vulnerability in htsearch in htdig
3.2.0b6
https://bugs.launchpad.net/bugs/172277
You received this bug notification because you are a member of Ubuntu
Bugs, which is the bug contact for Ubuntu.
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs