*** This bug is a security vulnerability ***

Public security bug reported:

Binary package hint: ikiwiki

References:
DSA-1553-1 (http://www.debian.org/security/2008/dsa-1553)

Quoting:
"It has been discovered that ikiwiki, a Wiki implementation, does not
guard password and content changes against cross-site request forgery
(CSRF) attacks."

** Affects: ikiwiki (Ubuntu)
     Importance: Undecided
         Status: New

** Affects: ikiwiki (Debian)
     Importance: Unknown
         Status: Fix Released

** Visibility changed to: Public

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2008-0165

** Bug watch added: Debian Bug tracker #475445
   http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=475445

** Also affects: ikiwiki (Debian) via
   http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=475445
   Importance: Unknown
       Status: Unknown

-- 
[ikiwiki] [CVE-2008-0165] cross-site request forgery
https://bugs.launchpad.net/bugs/227273
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to