|
From: <debian-security-announce@lists.debian.org>
Date: Sat Feb 21 2004 - 18:00:04 EST
-----BEGIN PGP SIGNED MESSAGE-----
- --------------------------------------------------------------------------
Package : mailman
Several vulnerabilities have been fixed in the mailman package:
- CAN-2003-0038 - potential cross-site scripting via certain CGI
- CAN-2003-0965 - cross-site scripting in the administrative
- CAN-2003-0991 - certain malformed email commands could cause the
The cross-site scripting vulnerabilities could allow an attacker to
In the process of fixing these vulnerabilities for DSA 436-1, a bug
For the current stable distribution (woody) this problem has been
The update for the unstable distribution did not share the bug
We recommend that you update your mailman package.
Upgrade Instructions
wget url
If you are using the apt-get package manager, use the line for
apt-get update
You may use an automated update by adding the resources from the
Debian GNU/Linux 3.0 alias woody
Source archives:
http://security.debian.org/pool/updates/main/m/mailman/mailman_2.0.11-1woody8.dsc
Alpha architecture:
http://security.debian.org/pool/updates/main/m/mailman/mailman_2.0.11-1woody8_alpha.deb
ARM architecture:
http://security.debian.org/pool/updates/main/m/mailman/mailman_2.0.11-1woody8_arm.deb
Intel IA-32 architecture:
http://security.debian.org/pool/updates/main/m/mailman/mailman_2.0.11-1woody8_i386.deb
Intel IA-64 architecture:
http://security.debian.org/pool/updates/main/m/mailman/mailman_2.0.11-1woody8_ia64.deb
HP Precision architecture:
http://security.debian.org/pool/updates/main/m/mailman/mailman_2.0.11-1woody8_hppa.deb
Motorola 680x0 architecture:
http://security.debian.org/pool/updates/main/m/mailman/mailman_2.0.11-1woody8_m68k.deb
Big endian MIPS architecture:
http://security.debian.org/pool/updates/main/m/mailman/mailman_2.0.11-1woody8_mips.deb
Little endian MIPS architecture:
http://security.debian.org/pool/updates/main/m/mailman/mailman_2.0.11-1woody7_mipsel.deb
PowerPC architecture:
http://security.debian.org/pool/updates/main/m/mailman/mailman_2.0.11-1woody8_powerpc.deb
IBM S/390 architecture:
http://security.debian.org/pool/updates/main/m/mailman/mailman_2.0.11-1woody8_s390.deb
Sun Sparc architecture:
http://security.debian.org/pool/updates/main/m/mailman/mailman_2.0.11-1woody8_sparc.deb
These files will probably be moved into the stable distribution on
- ---------------------------------------------------------------------------------
iD8DBQFAN+LaArxCt0PiXR4RAr4tAJ9b6u4rcxBpm67FIfCVVxF1PHmDVgCghfST
_______________________________________________
This archive was generated by hypermail 2.1.8 : Sat Feb 21 2004 - 20:01:02 EST |
Custom Search
|