Control: reassign -1 viewvc 1.1.25+repack-1 Control: fixed -1 1.1.26-1 - view*v*c - fixed, not notfound
On Thu, Feb 09, 2017 at 02:32:39PM +0100, Sebastien Delafond wrote: > Package: viewc > Severity: important > Tags: security > Control: found 1.1.25+repack-1 > Control: notfound 1.1.26-1 > > XSS vulnerability, identified by CVE-2017-5938. See > https://github.com/viewvc/viewvc/commit/9dcfc7daa4c940992920d3b2fbd317da20e44aad. > > -- System Information: > Debian Release: stretch/sid > APT prefers unstable > APT policy: (500, 'unstable'), (500, 'testing'), (500, 'stable'), (500, > 'oldstable'), (1, 'experimental') > Architecture: amd64 (x86_64) > Foreign Architectures: i386, armel > > Kernel: Linux 4.7.0-1-amd64 (SMP w/4 CPU cores) > Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8) > Shell: /bin/sh linked to /bin/bash > Init: sysvinit (via /sbin/init)