| Summary: | jquery new XSS issue fixed upstream in 3.0.0 | ||
|---|---|---|---|
| Product: | Mageia | Reporter: | David Walser <luigiwalser> |
| Component: | Security | Assignee: | Nicolas Lécureuil <mageia> |
| Status: | RESOLVED OLD | QA Contact: | Sec team <security> |
| Severity: | major | ||
| Priority: | Normal | ||
| Version: | 5 | ||
| Target Milestone: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| URL: | https://lwn.net/Vulnerabilities/710281/ | ||
| Whiteboard: | |||
| Source RPM: | jquery-1.7.2-6.mga6.src.rpm | CVE: | |
| Status comment: | |||
|
Description
David Walser
2016-12-28 18:57:18 CET
David Walser
2016-12-28 18:57:28 CET
Whiteboard:
(none) =>
MGA5TOO They backported the fix to 1.12.4 too: http://pkgs.fedoraproject.org/cgit/rpms/js-jquery1.git/commit/?h=f24&id=b8a2caa3afb3ea7d2d11e34043dc3c417719da3d Advisory from December 29: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/KJZIACUY6VAFCFCNGNPSKFZ3WZELK67C/ Fixed on svn ( cauldron ) Whiteboard:
MGA5TOO =>
(none) We can't fix this for Mageia 5. Status:
NEW =>
RESOLVED |