Could you explain what seems to be the security impact here? Cross Site Scripting (XSS) is an attack which may be possible when data is interpreted by a HTML renderer without ensuring that data is properly escaped / encoded. The "whois" command does not render HTML, it is a command line utility.
** Changed in: whois (Ubuntu) Status: New => Incomplete -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1829764 Title: linux whois command contain xss To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/whois/+bug/1829764/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs