Alerts This Week
Warning Icon 1 684
Alerts This Week
Warning Icon 1 684

Debian Wheezy: DSA-3036-1 Moderate: MediaWiki Cross Site Scripting

debian
Calendar Grey September 26, 2014
Debian Logo
MediaWiki security alert addressing cross site scripting vulnerabilities for Debian stable release. Discover how to update promptly.
It was discovered that MediaWiki, a wiki engine, did not sufficiently filter CSS in uploaded SVG files, allowing for cross site scripting

Summary

For the stable distribution (wheezy), this problem has been fixed in
version 1:1.19.19+dfsg-0+deb7u1.

For the unstable distribution (sid), this problem has been fixed in
version 1:1.19.19+dfsg-1.

We recommend that you upgrade your mediawiki packages.

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here