[b2evolution] [CVE-2007-0175] cross site scripting

Bug #227311 reported by disabled.user
264
Affects Status Importance Assigned to Milestone
b2evolution (Debian)
Fix Released
Unknown
b2evolution (Ubuntu)
Fix Released
Undecided
Unassigned
Declined for Gutsy by Jamie Strandboge
Dapper
Won't Fix
Undecided
Unassigned
Feisty
Won't Fix
Undecided
Unassigned

Bug Description

Binary package hint: b2evolution

References:
DSA-1568-1 (http://www.debian.org/security/2008/dsa-1568)

Quoting:
»"unsticky" discovered that b2evolution, a blog engine, performs
insufficient input sanitising, allowing for cross site scripting.«

CVE References

Changed in b2evolution:
status: Unknown → Fix Released
Revision history for this message
Hew (hew) wrote :

Ubuntu Feisty Fawn is no longer supported, so a SRU will not be issued for this release. Marking Feisty as Won't Fix.

Changed in b2evolution:
status: New → Won't Fix
Revision history for this message
keharitomenos (parmenides) wrote : Re: [Bug 227311] Re: [b2evolution] [CVE-2007-0175] cross site scripting

El lun, 15-12-2008 a las 02:58 +0000, Hew McLachlan escribió:
> Ubuntu Feisty Fawn is no longer supported, so a SRU will not be issued
> for this release. Marking Feisty as Won't Fix.
>
> ** Changed in: b2evolution (Ubuntu Feisty)
> Status: New => Won't Fix
>

Changed in b2evolution:
status: New → Fix Released
Revision history for this message
Jamie Strandboge (jdstrand) wrote :

Thank you for reporting this bug to Ubuntu. dapper has reached EOL
(End of Life) and is no longer supported. As a result, this bug
against dapper is being marked "Won't Fix". Please see
https://wiki.ubuntu.com/Releases for currently supported Ubuntu
releases.

Please feel free to report any other bugs you may find.

Changed in b2evolution (Ubuntu Dapper):
status: New → Won't Fix
To post a comment you must log in.
This report contains Public Security information  
Everyone can see this security related information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.