Secunia - Stay Secure
Gartner
Home Corporate Website Jobs Updated Mailing Lists RSS Blog  Online Shop Advertise
Software Inspectors
  Scan Online
  Personal (PSI)
  Network (NSI 2.0)

Solutions For
  Security Professionals
  Security Vendors

Free Solutions For
  Open Communities
  Journalists & Media

Secunia Advisories
  Search
  Historic Advisories
  Listed By Product
  Listed By Vendor
  Statistics / Graphs
  Secunia Research
  Report Vulnerability
  About Advisories

Virus Information
  Chronological List
  Last 10 Virus Alerts
  About Virus Information

Secunia Customers
  Customer Area


Ubuntu opdatering til moinmoin Advisory Available in English  Advisory Available in German 

Secunia Advisory: SA24244  
Udsendt: 2007-02-21

Kritisk:
Mindre kritisk
Betydning: Cross Site Scripting
Hvor: Fra Internet
Løsning Status: Producent Patch

OS:Ubuntu Linux 5.10


CVE reference:CVE-2007-0901 (Secunia mirror)
CVE-2007-0902 (Secunia mirror)

Want to know the next time vulnerabilities are fixed in this product?
- Companies can be alerted via email and SMS!


Beskrivelse:
Ubuntu har udgivet en opdatering til moinmoin. Denne retter nogle sårbarheder, som kan udnyttes af ondsindede personer til at udføre cross-site scriptingangreb.

Yderligere information:
SA24138

Løsning:
Installér opdaterede pakker.

Ubuntu 5.10:

Source archives:

http://security.ubuntu.com/ubuntu/poo...3/moin1.3_1.3.4-6ubuntu1.5.10.diff.gz
Size/MD5: 45055 cf953c316085948e8dc9611835921bdc
http://security.ubuntu.com/ubuntu/poo...in1.3/moin1.3_1.3.4-6ubuntu1.5.10.dsc
Size/MD5: 793 72c93be58cada2d2ea43a6e8904a56ac
http://security.ubuntu.com/ubuntu/pool/main/m/moin1.3/moin1.3_1.3.4.orig.tar.gz
Size/MD5: 3085225 aff667e7c60c5af2525cd1381f417608
http://security.ubuntu.com/ubuntu/pool/main/m/moin/moin_1.2.4-1ubuntu2.2.diff.gz
Size/MD5: 39039 5b3de304bb89b4ae0ca9a0a2a9c4703d
http://security.ubuntu.com/ubuntu/pool/main/m/moin/moin_1.2.4-1ubuntu2.2.dsc
Size/MD5: 646 49eadc7ac308498b2c53cde03ab8bc72
http://security.ubuntu.com/ubuntu/pool/main/m/moin/moin_1.2.4.orig.tar.gz
Size/MD5: 1142734 4fea82b27079d1db50a38cf06317cfaa

Architecture independent packages:

http://security.ubuntu.com/ubuntu/pool/main/m/moin/moin_1.2.4-1ubuntu2.2_all.deb
Size/MD5: 875492 439ce6791bfc4634de3c20f2aedbe025
http://security.ubuntu.com/ubuntu/poo...in-common_1.3.4-6ubuntu1.5.10_all.deb
Size/MD5: 726416 f91ba8e0a07d25811754b6d4c62a1696
http://security.ubuntu.com/ubuntu/poo...-moinmoin_1.3.4-6ubuntu1.5.10_all.deb
Size/MD5: 50240 579771bff2ed9e979a477d7b5c47c229
http://security.ubuntu.com/ubuntu/poo...-moinmoin_1.3.4-6ubuntu1.5.10_all.deb
Size/MD5: 584382 ed7269eefdbb71e2d060c325492cff1d
http://security.ubuntu.com/ubuntu/poo...-moinmoin_1.3.4-6ubuntu1.5.10_all.deb
Size/MD5: 584386 c914fa345dfdd89dc5896b04f1b02acc

Updated packages for Ubuntu 6.06 LTS:

Source archives:

http://security.ubuntu.com/ubuntu/pool/main/m/moin/moin_1.5.2-1ubuntu2.2.diff.gz
Size/MD5: 37929 15194fb653e00c43092afcd7cf7efdcd
http://security.ubuntu.com/ubuntu/pool/main/m/moin/moin_1.5.2-1ubuntu2.2.dsc
Size/MD5: 702 050a5cfec5708d8da0a1a6cc69621696
http://security.ubuntu.com/ubuntu/pool/main/m/moin/moin_1.5.2.orig.tar.gz
Size/MD5: 3975925 689ed7aa9619aa207398b996d68b4b87

Architecture independent packages:

http://security.ubuntu.com/ubuntu/poo...nmoin-common_1.5.2-1ubuntu2.2_all.deb
Size/MD5: 1507826 a10aea39090b803979f40169b09d9eee
http://security.ubuntu.com/ubuntu/poo...hon-moinmoin_1.5.2-1ubuntu2.2_all.deb
Size/MD5: 69418 c0c6ccb72d6086ca701806cc7375ab82
http://security.ubuntu.com/ubuntu/poo...2.4-moinmoin_1.5.2-1ubuntu2.2_all.deb
Size/MD5: 834508 a0b20e90fd41c46caaf09229e32585e8

Updated packages for Ubuntu 6.10:

Source archives:

http://security.ubuntu.com/ubuntu/pool/main/m/moin/moin_1.5.3-1ubuntu1.2.diff.gz
Size/MD5: 38642 4f9dbe80cf2f2fd62f962fbed248f65a
http://security.ubuntu.com/ubuntu/pool/main/m/moin/moin_1.5.3-1ubuntu1.2.dsc
Size/MD5: 726 379049d45f6684d2bc38f7ea5f722afe
http://security.ubuntu.com/ubuntu/pool/main/m/moin/moin_1.5.3.orig.tar.gz
Size/MD5: 4187091 e95ec46ee8de9527a39793108de22f7d

Architecture independent packages:

http://security.ubuntu.com/ubuntu/poo...nmoin-common_1.5.3-1ubuntu1.2_all.deb
Size/MD5: 1574742 9e686f13fbda8d19c7e10db62b7b522b
http://security.ubuntu.com/ubuntu/poo...hon-moinmoin_1.5.3-1ubuntu1.2_all.deb
Size/MD5: 73506 8fcda2db454c1492332cb764b081d902
http://security.ubuntu.com/ubuntu/poo...2.4-moinmoin_1.5.3-1ubuntu1.2_all.deb
Size/MD5: 908884 abae777420f930a54430c6438316a20f

Original Advisory:
http://www.ubuntu.com/usn/usn-423-1

Andre Kilder:
SA24138:
http://secunia.com/advisories/24138/



Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.

185 Relaterede Secunia Advisories, displaying 10

1. Ubuntu opdatering til kdelibs / qt-x11-free
2. Ubuntu opdatering til ipsec-tools
3. Ubuntu opdatering til freetype/libxfont/xorg
4. Ubuntu opdatering til krb5
5. Ubuntu opdatering til openoffice.org
6. Ubuntu opdatering til xmms
7. Ubuntu opdatering til nas
8. Ubuntu opdatering til file
9. Ubuntu opdatering til inkscape
10. Ubuntu opdatering til libwpd

Vis alle relaterede advisories


Send Feedback to Secunia

Hvis du har ny information angående dette Secunia advisory eller et produkt i vores database, så send det venligst til os. Du kan sende det til os enten ved at bruge vores web formular eller ved at sende det til vuln@secunia.com.

Ideer, foreslag og andet feedback er også meget velkommen.








Secunia PSI
Scan | Patch | Track
Free Download

Secunia Poll

Do you think it's important to read Setup/User Guides for applications for use within your network?


See Results   


Most Popular Advisories

1.
Apple Safari Cross-Domain Cookie Injection Vulnerability
2.
YouTube Blog Multiple Vulnerabilities
3.
dnsmasq Denial of Service and DNS Cache Poisoning
4.
Moodle Script Insertion and Cross-Site Request Forgery
5.
Asterisk Two Denial of Service Vulnerabilities
6.
IPCop update for various packages
7.
SocialEngine SQL Injection and Code Execution
8.
Geeklog Forum Plugin Search Cross-Site Scripting Vulnerability
9.
Ubuntu update for dnsmasq
10.
Claroline Multiple Cross-Site Scripting Vulnerabilities





Vulnerability Management - Terms & Conditions - Copyright 2002-2008 Secunia - Compliance - Contact Secunia