Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 514
Alerts This Week
Warning Icon 1 514

Fedora 22: 2015-6778 Moderate: WordPress 4.2.1 XSS Patch

fedora
Calendar Grey May 8, 2015
Scroller Fedora
Debian issued a security notice for WordPress 4.5.3 highlighting various vulnerabilities and providing instructions for updates.
**WordPress 4.2 “Powell” ** * Upstream announcement https://wordpress.org/news/2015/04/powell/ **WordPress 4.2.1 Security Release** * Upstream announcement https://word...

Summary

Wordpress is an online publishing / weblog package that makes it very easy,

almost trivial, to get information out to people on the web.

Important information in /usr/share/doc/wordpress/README.fedora

Update Information:

**WordPress 4.2 “Powell” ** * Upstream announcement https://wordpress.org/news/2015/04/powell/

**WordPress 4.2.1 Security Release** * Upstream announcement https://wordpress.org/news/2015/04/wordpress-4-2-1/

Change Log

References


[ 1 ] Bug #1214650 - CVE-2015-3438 CVE-2015-3439 wordpress: several vulnerabilities fixed in Wordpress 4.1.2 https://bugzilla.redhat.com/show_bug.cgi?id=1214650 [ 2 ] Bug #1216069 - CVE-2015-3440 wordpress: stored XSS via long comments https://bugzilla.redhat.com/show_bug.cgi?id=1216069

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update wordpress' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
important
Lowest
Low
Medium
High
Critical

Name: wordpress
Product: Fedora 22
Version: 4.2.1
Release: 1.fc22
Summary: Blog tool and publishing platform

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.