Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Ubuntu 20.04: 2020-9c3f8c1e34 High: CSRF Vulnerability in python-flask

fedora
Calendar Grey October 7, 2018
Dist Fedora Esm H88
Secure Kronolith 4.2.25 on Fedora 29 by applying essential XSS vulnerability updates. Follow our comprehensive guide for installation and patching steps
**Kronolith 4.2.25** * [mjr] SECURITY: Fix XSS vulnerability in resource group property view (Bug #14857)

Summary

Kronolith is the Horde calendar application. It provides web-based

calendars backed by a SQL database or a Kolab server. Supported features

include Ajax and mobile interfaces, shared calendars, remote calendars,

invitation management (iCalendar/iTip), free/busy management, resource

management, alarms, recurring events, and a sophisticated day/week view

which handles arbitrary numbers of overlapping events.

**Kronolith 4.2.25** * [mjr] SECURITY: Fix XSS vulnerability in resource group

property view (Bug #14857). * [mjr] SECURITY: Fix XSS vulnerability in event URL

field (Bug #14857).

su -c 'dnf upgrade --advisory FEDORA-2018-8b97249503' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/

List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Change Log

References

Update Instructions

Product: Fedora 29
Version: 4.2.25
Release: 1.fc29
Summary: A web based calendar

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here