Bug#854681: viewc: Cross-Site Scripting (XSS) vulnerability

2017-02-09 Thread Adrian Bunk
Control: reassign -1 viewvc 1.1.25+repack-1 Control: fixed -1 1.1.26-1 - view*v*c - fixed, not notfound On Thu, Feb 09, 2017 at 02:32:39PM +0100, Sebastien Delafond wrote: > Package: viewc > Severity: important > Tags: security > Control: found 1.1.25+repack-1 > Control: notfound 1.1.26-1 > > XS

Bug#854681: viewc: Cross-Site Scripting (XSS) vulnerability

2017-02-09 Thread Sebastien Delafond
Package: viewc Severity: important Tags: security Control: found 1.1.25+repack-1 Control: notfound 1.1.26-1 XSS vulnerability, identified by CVE-2017-5938. See https://github.com/viewvc/viewvc/commit/9dcfc7daa4c940992920d3b2fbd317da20e44aad. -- System Information: Debian Release: stretch/sid AP