Alerts This Week
Warning Icon 1 770
Alerts This Week
Warning Icon 1 770

Fedora 21 php-horde-Horde-Auth 2.1.10 Moderate: XSS and Password Fixes

fedora
Calendar Grey July 21, 2015
Dist Fedora Esm H88
Cross-site scripting patches and updates for password security in php-horde-Horde-Auth on Fedora 21. Upgrade today for enhanced safety.
**Horde_Form 2.0.10** * [jan] SECURITY: Fixed XSS in form renderer

Summary

The Horde_Auth package provides a common interface into the various

backends for the Horde authentication system.

Update Information:

**Horde_Form 2.0.10** * [jan] SECURITY: Fixed XSS in form renderer.

**Horde_Icalendar 2.1.1** * [jan] Fix generated VALARM TRIGGER attributes with empty duration (Ralf Becker).

**Horde_Auth 2.1.10** * [jan] SECURITY: Don't allow to login to LDAP with an emtpy password.

**Horde_Core 2.20.6** * [jan] SECURITY: Don't allow to login with an emtpy password. * [jan] Give administrators access to all groups, even with $conf['share']['any_group'] disabled.

Change Log

* Tue Jul 7 2015 Remi Collet - 2.1.10-1 - Update to 2.1.10 * Mon Jun 29 2015 Remi Collet - 2.1.9-1 - Update to 2.1.9 * Tue Apr 28 2015 Remi Collet - 2.1.8-1 - Update to 2.1.8 * Tue Apr 14 2015 Remi Collet - 2.1.7-1 - Update to 2.1.7 - add provides php-composer(horde/horde-auth) - add dependency on Horde_Translation 2.2.0

References

Fedora Update Notification FEDORA-2015-11287 2015-07-10 16:34:10
Name : php-horde-Horde-Auth Product : Fedora 21 Version : 2.1.10 Release : 1.fc21 URL : http://pear.horde.org Summary : Horde Authentication API Description : The Horde_Auth package provides a common interface into the various backends for the Horde authentication system.

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update php-horde-Horde-Auth' at the command line. For more information, refer to "Managing Software with yum", available at .

Name: php-horde-Horde-Auth
Product: Fedora 21
Version: 2.1.10
Release: 1.fc21
Summary: Horde Authentication API

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here