Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Fedora 22: 2015-11261 Moderate: PHP-Horde-Icalendar XSS Fix

fedora
Calendar Grey July 21, 2015
Dist Fedora Esm H88
Important patch for php-horde-Horde-Icalendar mitigating XSS and LDAP security flaws in Fedora 22.
**Horde_Form 2.0.10** * [jan] SECURITY: Fixed XSS in form renderer

Summary

An API for dealing with iCalendar data.

Update Information:

**Horde_Form 2.0.10** * [jan] SECURITY: Fixed XSS in form renderer.

**Horde_Icalendar 2.1.1** * [jan] Fix generated VALARM TRIGGER attributes with empty duration (Ralf Becker).

**Horde_Auth 2.1.10** * [jan] SECURITY: Don't allow to login to LDAP with an emtpy password.

**Horde_Core 2.20.6** * [jan] SECURITY: Don't allow to login with an emtpy password. * [jan] Give administrators access to all groups, even with $conf['share']['any_group'] disabled.

Change Log

* Mon Jul 6 2015 Remi Collet - 2.1.1-1 - Update to 2.1.1 * Thu Jun 18 2015 Remi Collet - 2.1.0-1 - Update to 2.1.0

References

Fedora Update Notification FEDORA-2015-11261 2015-07-10 16:32:56
Name : php-horde-Horde-Icalendar Product : Fedora 22 Version : 2.1.1 Release : 1.fc22 URL : http://pear.horde.org Summary : iCalendar API Description : An API for dealing with iCalendar data.

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update php-horde-Horde-Icalendar' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
important
Lowest
Low
Medium
High
Critical

Name: php-horde-Horde-Icalendar
Product: Fedora 22
Version: 2.1.1
Release: 1.fc22
Summary: iCalendar API

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here