Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-13796

Опубликовано: 12 июл. 2018
Источник: debian
EPSS Низкий

Описание

An issue was discovered in GNU Mailman before 2.1.28. A crafted URL can cause arbitrary text to be displayed on a web page from a trusted site.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
mailmanfixed1:2.1.27-1.1package
mailmanfixed1:2.1.23-1+deb9u4stretchpackage

Примечания

  • Fixed in 2.1.28; Regression fix in 2.1.29

  • https://mail.python.org/pipermail/mailman-users/2018-July/083536.html

  • https://bugs.launchpad.net/mailman/+bug/1780874

  • https://bazaar.launchpad.net/~mailman-coders/mailman/2.1/revision/1796

  • Needs as well a further regression fix as per

  • https://bugs.launchpad.net/mailman/+bug/1783417

  • https://bazaar.launchpad.net/~mailman-coders/mailman/2.1/revision/1798

EPSS

Процентиль: 64%
0.00478
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 7 лет назад

An issue was discovered in GNU Mailman before 2.1.28. A crafted URL can cause arbitrary text to be displayed on a web page from a trusted site.

CVSS3: 4.3
redhat
больше 7 лет назад

An issue was discovered in GNU Mailman before 2.1.28. A crafted URL can cause arbitrary text to be displayed on a web page from a trusted site.

CVSS3: 6.5
nvd
больше 7 лет назад

An issue was discovered in GNU Mailman before 2.1.28. A crafted URL can cause arbitrary text to be displayed on a web page from a trusted site.

suse-cvrf
больше 7 лет назад

Security update for mailman

CVSS3: 6.5
github
больше 7 лет назад

Moderate severity vulnerability that affects mailman

EPSS

Процентиль: 64%
0.00478
Низкий