Bug#658907: CVE-2012-0834: XSS

2012-02-07 Thread Arno Töll
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 FWIW: Debian Mentors has a ready NMU which fixes the problem. The NMU itself might be not suitable as such, but it fixes CVE-2012-0834 for Sid [1][2]. [1] http://lists.debian.org/debian-mentors/2012/02/msg00203.html [2] http://mentors.debian.net/pack

Bug#658907: CVE-2012-0834: XSS

2012-02-06 Thread Moritz Muehlenhoff
Package: phpldapadmin Severity: grave Tags: security Hi, this is CVE-2012-0834: http://sourceforge.net/tracker/index.php?func=detail&aid=3477910&group_id=61828&atid=498546 Fix: http://phpldapadmin.git.sourceforge.net/git/gitweb.cgi?p=phpldapadmin/phpldapadmin;a=commit;h=7dc8d57d6952fe681cb9e8818d