Ubuntu update for moinmoin
Secunia Advisory: SA25208
Release Date: 2007-05-08
Popularity: 3,619 views

Critical:
Less critical
Impact: Cross Site Scripting
Where: From remote
Solution Status: Vendor Patch

OS:Ubuntu Linux 6.06
Ubuntu Linux 6.10
Ubuntu Linux 7.04

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2007-2423


Description:
Ubuntu has issued an update for moinmoin. This fixes a vulnerability, which can be exploited by malicious people to conduct cross-site scripting attacks.

For more information:
SA24138

Solution:
Apply updated packages.

-- Ubuntu 6.06 LTS --

Source archives:

http://security.ubuntu.com/ubuntu/pool/main/m/moin/moin_1.5.2-1ubuntu2.3.diff.gz
Size/MD5: 39487 c3b1dfe20a3bb839def08020159321ef
http://security.ubuntu.com/ubuntu/pool/main/m/moin/moin_1.5.2-1ubuntu2.3.dsc
Size/MD5: 702 584b400e32f0fae1aef2fa69ffed2bd8
http://security.ubuntu.com/ubuntu/pool/main/m/moin/moin_1.5.2.orig.tar.gz
Size/MD5: 3975925 689ed7aa9619aa207398b996d68b4b87

Architecture independent packages:

http://security.ubuntu.com/ubuntu/poo...nmoin-common_1.5.2-1ubuntu2.3_all.deb
Size/MD5: 1507924 c53bc6a1452309b150dc86d0884feea6
http://security.ubuntu.com/ubuntu/poo...hon-moinmoin_1.5.2-1ubuntu2.3_all.deb
Size/MD5: 69548 cc8dd84cef4cd95749a7f3914c55b49b
http://security.ubuntu.com/ubuntu/poo...2.4-moinmoin_1.5.2-1ubuntu2.3_all.deb
Size/MD5: 834738 950146660e787274fe0d69a8ab2bff5d

-- Ubuntu 6.10 --

Source archives:

http://security.ubuntu.com/ubuntu/pool/main/m/moin/moin_1.5.3-1ubuntu1.3.diff.gz
Size/MD5: 40234 e232754328aa47d1f2c5be8252392bf3
http://security.ubuntu.com/ubuntu/pool/main/m/moin/moin_1.5.3-1ubuntu1.3.dsc
Size/MD5: 726 86bb330aafbfb7c428950f8646fc084b
http://security.ubuntu.com/ubuntu/pool/main/m/moin/moin_1.5.3.orig.tar.gz
Size/MD5: 4187091 e95ec46ee8de9527a39793108de22f7d

Architecture independent packages:

http://security.ubuntu.com/ubuntu/poo...nmoin-common_1.5.3-1ubuntu1.3_all.deb
Size/MD5: 1574744 57f533196afd6198798b24eaa105d596
http://security.ubuntu.com/ubuntu/poo...hon-moinmoin_1.5.3-1ubuntu1.3_all.deb
Size/MD5: 73640 64019d9f0109287760bfd5b4660cdc4b
http://security.ubuntu.com/ubuntu/poo...2.4-moinmoin_1.5.3-1ubuntu1.3_all.deb
Size/MD5: 909078 f6deadb7c99624b72b08b973c0973f8f

-- Ubuntu 7.04 --

Source archives:

http://security.ubuntu.com/ubuntu/poo.../moin/moin_1.5.3-1.1ubuntu3.1.diff.gz
Size/MD5: 38905 30c1f2043f7629767530923b797026c5
http://security.ubuntu.com/ubuntu/pool/main/m/moin/moin_1.5.3-1.1ubuntu3.1.dsc
Size/MD5: 671 7209cfa3f1a21c1a45dcb2ddf16cabb9
http://security.ubuntu.com/ubuntu/pool/main/m/moin/moin_1.5.3.orig.tar.gz
Size/MD5: 4187091 e95ec46ee8de9527a39793108de22f7d

Architecture independent packages:

http://security.ubuntu.com/ubuntu/poo...oin-common_1.5.3-1.1ubuntu3.1_all.deb
Size/MD5: 1574964 e73dd559227f0712c5d453b80a08f388
http://security.ubuntu.com/ubuntu/poo...n-moinmoin_1.5.3-1.1ubuntu3.1_all.deb
Size/MD5: 914232 26c1e3c3344c2666c1150a77b0ffcccc

Original Advisory:
http://www.ubuntu.com/usn/usn-458-1

Other References:
SA24138:
http://secunia.com/advisories/24138/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Microsoft Word Malformed Object Pointer Vulnerability // 22 views
2. Netgear WN802T Wireless Access Point Two Vulnerabilities // 19 views
3. Subdreamer Light Global Variables SQL Injection Vulnerability // 17 views
4. 3Com Wireless 8760 Access Point HTTP Request Processing Denial of Service // 17 views
5. VLC Media Player Multiple Vulnerabilities // 14 views
6. phpBB "gen_rand_string()" Predictable RNG Weakness // 13 views
7. XASTIR Insecure Temporary Files // 13 views
8. Opera Multiple Vulnerabilities // 13 views
9. CS-Cart "cs_cookies" SQL Injection Vulnerability // 12 views
10. Sun Java JDK / JRE Multiple Vulnerabilities // 12 views