Comment 14 for bug 1092412

Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package xymon - 4.3.0~beta2.dfsg-9ubuntu1.1

---------------
xymon (4.3.0~beta2.dfsg-9ubuntu1.1) oneiric-security; urgency=low

  * SECURITY UPDATE: Multiple cross site scripting (XSS) vulnerabilities
    (LP: #1092412)
    - debian/patches/8-CVE-2011-1716.patch: show user input as html quoted
      output. Based on upstream changes.
    - CVE-2011-1716
 -- Christian Kuersteiner <email address hidden> Mon, 14 Jan 2013 14:01:38 +0700