Could you explain what seems to be the security impact here?

Cross Site Scripting (XSS) is an attack which may be possible when data
is interpreted by a HTML renderer without ensuring that data is properly
escaped / encoded. The "whois" command does not render HTML, it is a
command line utility.

** Changed in: whois (Ubuntu)
       Status: New => Incomplete

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1829764

Title:
  linux whois command contain xss

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/whois/+bug/1829764/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to