--- ../../english/security/2018/dsa-4246.wml 2018-07-16 10:07:36.381604970 +0500 +++ 2018/dsa-4246.wml 2018-07-16 10:11:52.333659044 +0500 @@ -1,20 +1,21 @@ -<define-tag description>security update</define-tag> +#use wml::debian::translation-check translation="c4a5c3a857da924c38d9bf6f83c0541c2b67048c" mindelta="1" maintainer="Lev Lamberov" +<define-tag description>обновление безопаÑноÑÑи</define-tag> <define-tag moreinfo> -<p>Toshitsugu Yoneyama of Mitsui Bussan Secure Directions, Inc. discovered -that mailman, a web-based mailing list manager, is prone to a cross-site -scripting flaw allowing a malicious listowner to inject scripts into the -listinfo page, due to not validated input in the host_name field.</p> +<p>ТоÑиÑÑÑÐ³Ñ ÐнеÑма из Mitsui Bussan Secure Directions, Inc. обнаÑÑжил, +ÑÑо mailman, Ð¼ÐµÐ½ÐµÐ´Ð¶ÐµÑ ÑпиÑков ÑаÑÑÑлки Ñ Ð²ÐµÐ±-инÑеÑÑейÑом, ÑÑзвим к межÑайÑÐ¾Ð²Ð¾Ð¼Ñ +ÑкÑипÑингÑ, позволÑÑÑÐµÐ¼Ñ Ð²Ð»Ð°Ð´ÐµÐ»ÑÑÑ ÑпиÑка вводиÑÑ ÑÑенаÑии в ÑÑÑаниÑÑ +инÑоÑмаÑии о ÑпиÑке из-за Ñого, ÑÑо пÑовеÑка ввода в поле host_name не вÑполнÑеÑÑÑ.</p> -<p>For the stable distribution (stretch), this problem has been fixed in -version 1:2.1.23-1+deb9u3.</p> +<p>Ð ÑÑабилÑном вÑпÑÑке (stretch) ÑÑа пÑоблема бÑла иÑпÑавлена в +веÑÑии 1:2.1.23-1+deb9u3.</p> -<p>We recommend that you upgrade your mailman packages.</p> +<p>РекомендÑеÑÑÑ Ð¾Ð±Ð½Ð¾Ð²Ð¸ÑÑ Ð¿Ð°ÐºÐµÑÑ mailman.</p> -<p>For the detailed security status of mailman please refer to its security -tracker page at: -<a href="https://security-tracker.debian.org/tracker/mailman">https://security-tracker.debian.org/tracker/mailman</a></p> +<p>С подÑобнÑм ÑÑаÑÑÑом поддеÑжки безопаÑноÑÑи mailman можно ознакомиÑÑÑÑ Ð½Ð° +ÑооÑвеÑÑÑвÑÑÑей ÑÑÑаниÑе оÑÑÐ»ÐµÐ¶Ð¸Ð²Ð°Ð½Ð¸Ñ Ð±ÐµÐ·Ð¾Ð¿Ð°ÑноÑÑи по адÑеÑÑ +<a href="https://security-tracker.debian.org/tracker/mailman">\ +https://security-tracker.debian.org/tracker/mailman</a></p> </define-tag> # do not modify the following line #include "$(ENGLISHDIR)/security/2018/dsa-4246.data" -# $Id: $