Bug#661993: CVE-2011-2191: persistent CSRF on admin interface

2016-06-22 Thread Jonathan Wiltshire
Package: src:cherokee Dear maintainer, Recently you fixed one or more security problems and as a result you closed this bug. These problems were not serious enough for a Debian Security Advisory, so they are now on my radar for fixing in the following suites through point releases: squeeze (6.0.

Bug#661993: CVE-2011-2191: persistent CSRF on admin interface

2012-03-09 Thread Gunnar Wolf
tags 661993 + upstream, help, confirmed Hi, Although the impact of this security bug is not too high (as a series of conditions should be present, which are usually not there), it is a real bug with real implications. I am tempted to downgrade it, as it is only dangerous in very specific situatio

Bug#661993: CVE-2011-2191: persistent CSRF on admin interface

2012-03-03 Thread Helmut Grohne
Source: cherokee Version: 1.2.101-1 Severity: serious Tags: security References: CVE-2011-2191 https://bugs.launchpad.net/ubuntu/+source/cherokee/+bug/784632 https://bugzilla.redhat.com/show_bug.cgi?id=713304 Please verify whether the issue is still present in the package. A quick look at admin/P