Bug#383416: horde3: 3.0.11 fixes XSS issues is CVE-2006-4255/CVE-2006-4256

2006-08-26 Thread Stefan Fritsch
These issues have been assigned CVE-2006-4255/CVE-2006-4256: CVE-2006-4255: Cross-site scripting (XSS) vulnerability in horde/imp/search.php in Horde IMP H3 before 4.1.3 allows remote attackers to include arbitrary web script or HTML via multiple unspecified vectors related to folder names, as

Bug#383416: [pkg-horde] Bug#383416: horde3: 3.0.11 fixes XSS issues

2006-08-23 Thread Ola Lundqvist
Hi Thanks. This will be handled as soon as possible. Regards, // Ola On Thu, Aug 17, 2006 at 03:51:26PM +1000, Geoff Crompton wrote: Package: horde3 Severity: normal Horde 3.0.11 fixes some XSS issues, according to http://lists.horde.org/archives/announce/2006/000287.html This is

Bug#383416: horde3: 3.0.11 fixes XSS issues

2006-08-17 Thread Geoff Crompton
Package: horde3 Severity: normal Horde 3.0.11 fixes some XSS issues, according to http://lists.horde.org/archives/announce/2006/000287.html This is being tracked at secfocus: http://www.securityfocus.com/bid/19544 No CVE yet. -- System Information: Debian Release: 3.1 Architecture: i386 (i686)