mailman-2.1.12-14.AXS4.2

エラータID: AXSA:2011-73:01

リリース日: 
2011/03/04 Friday - 20:59
題名: 
mailman-2.1.12-14.AXS4.2
影響のあるチャネル: 
Asianux Server 4 for x86
Asianux Server 4 for x86_64
Severity: 
High
Description: 

Mailman is software to help manage email discussion lists, much like Majordomo and Smartmail. Unlike most similar products, Mailman gives each mailing list a webpage, and allows users to subscribe, unsubscribe, etc. over the Web. Even the list manager can administer his or her list entirely from the Web. Mailman also integrates most things people want to do with mailing lists, including archiving, mail - news gateways, and so on.
Documentation can be found in: /usr/share/doc/mailman-2.1.9
Security issues fixed with this release:
CVE-2010-3089
Multiple cross-site scripting (XSS) vulnerabilities in GNU Mailman before 2.1.14rc1 allow remote authenticated users to inject arbitrary web script or HTML via vectors involving (1) the list information field or (2) the list description field.
CVE-2011-0707
Multiple cross-site scripting (XSS) vulnerabilities in Cgi/confirm.py in GNU Mailman 2.1.14 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) full name or (2) username field in a confirmation message.

解決策: 

Update packages.

追加情報: 

N/A

ダウンロード: 

SRPMS
  1. mailman-2.1.12-14.AXS4.2.src.rpm
    MD5: 5bb120f17016df263778b128690eab0b
    SHA-256: 952770950e24995c3740731a4cad91e52ff46cc3b75f808ff07a445b48555ae3
    Size: 8.82 MB
  2. pango-1.28.1-3.AXS4.5.src.rpm
    MD5: 1bf4ac05c85fea6408c84dfedd1438aa
    SHA-256: 1f742a7703a8dedb4e24132d6a481928d0452e2411490d67600ef0946ff0bda9
    Size: 1.37 MB

Asianux Server 4 for x86
  1. mailman-2.1.12-14.AXS4.2.i686.rpm
    MD5: edf20ff52bad2fb3cb0b595e63a0a1af
    SHA-256: 7da02a5d9111bece822b32d510dd0cd982e30ee4673f3fa969e18875f8ede9d7
    Size: 7.13 MB
  2. pango-1.28.1-3.AXS4.5.i686.rpm
    MD5: 13b0662f703c93d246888b48845dd285
    SHA-256: 85a4539a25c210a9ab59a270ee02d8a76325ac3d978cec163f9eb88e9cc1a5ce
    Size: 349.17 kB
  3. pango-devel-1.28.1-3.AXS4.5.i686.rpm
    MD5: 39b0f707d430ac44d5a5fe2874cd5013
    SHA-256: 4a663a4213f80bad84928f25802977cf95b76ab7795b817b88657a71bd2e3890
    Size: 277.66 kB

Asianux Server 4 for x86_64
  1. mailman-2.1.12-14.AXS4.2.x86_64.rpm
    MD5: 160685453a8e36b94ee4801d9057a1de
    SHA-256: f3c94efe7e88797fd9d6acc816dbf0aee101887edac7ce813beb845307be7e48
    Size: 7.16 MB
  2. pango-1.28.1-3.AXS4.5.x86_64.rpm
    MD5: 959ddf043d1a6b5270f9a03e73369aeb
    SHA-256: 05e23a3b30f6f6dac0c10be334568b598560ffc9b07c35a375da7465968399e8
    Size: 349.71 kB
  3. pango-devel-1.28.1-3.AXS4.5.x86_64.rpm
    MD5: 50e4ba4a68f72102a4c483b9fd985b75
    SHA-256: 9290e03ade80db9dec6e13ada394f940131f26a4e6ea953c2ff0cd33b1b9041c
    Size: 277.25 kB
  4. pango-1.28.1-3.AXS4.5.i686.rpm
    MD5: 13b0662f703c93d246888b48845dd285
    SHA-256: 85a4539a25c210a9ab59a270ee02d8a76325ac3d978cec163f9eb88e9cc1a5ce
    Size: 349.17 kB
  5. pango-devel-1.28.1-3.AXS4.5.i686.rpm
    MD5: 39b0f707d430ac44d5a5fe2874cd5013
    SHA-256: 4a663a4213f80bad84928f25802977cf95b76ab7795b817b88657a71bd2e3890
    Size: 277.66 kB