mailman 1:2.1.26-1ubuntu0.6 source package in Ubuntu

Changelog

mailman (1:2.1.26-1ubuntu0.6) bionic-security; urgency=medium

  * SECURITY UPDATE: CRSF attack against a list admin
    - debian/patches/CVE-2021-44227.patch: don't allow unprivileged tokens
      for admin or admindb in Mailman/CSRFcheck.py, Mailman/Cgi/admin.py,
      Mailman/Cgi/admindb.py, Mailman/Cgi/edithtml.py.
    - CVE-2021-44227

 -- Marc Deslauriers <email address hidden>  Tue, 07 Dec 2021 10:56:56 -0500

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Bionic
Original maintainer:
Ubuntu Developers
Architectures:
any
Section:
mail
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Bionic updates main mail
Bionic security main mail

Downloads

File Size SHA-256 Checksum
mailman_2.1.26.orig.tar.gz 8.8 MiB 240177e1ef561ede88d7b48283c3835f39bbd0b1ae19100d3520cbe43058339f
mailman_2.1.26-1ubuntu0.6.debian.tar.xz 104.7 KiB 45bfa72e65d253218e64ed15eea87ff55233dde272e459bae0dc021742e6b790
mailman_2.1.26-1ubuntu0.6.dsc 2.1 KiB 5b3f327af7814b09b7f9344b04395725e4c2e5e4d4d4b48e370463a6e46ca413

View changes file

Binary packages built by this source

mailman: Web-based mailing list manager (legacy branch)

 The GNU Mailing List Manager, which manages email discussion lists.
 Mailman gives each mailing list a web page, and allows users to
 subscribe, unsubscribe, etc. over the web. The list manager can
 administer his or her list entirely from the web.
 .
 Mailman also integrates most things people want to do with mailing
 lists, including archiving, mail <-> news gateways, and so on. It
 has all of the features you expect from such a product, plus
 integrated support for the web (including web based archiving),
 automated bounce handling and integrated spam prevention.
 .
 Note that this package contains the legacy (2.x) branch of Mailman.
 All new development happens in the Mailman 3 suite, available in
 Debian via the mailman3 metapackage.

mailman-dbgsym: debug symbols for mailman