Alerts This Week
Warning Icon 1 905
Alerts This Week
Warning Icon 1 905

Fedora 35: FEDORA-2022-8c76e587f7 Critical XSS in DokuWiki

fedora
Calendar Grey September 23, 2022
Dist Fedora Esm H88
DokuWiki upgrade for Fedora 35 resolves significant XSS vulnerability. Use dnf for installation with advisory FEDORA-2022-8c76e587f7.
Update to bugfix/security release 2022-07-29a

Summary

DokuWiki is a standards compliant, simple to use Wiki, mainly aimed at creating

documentation of any kind. It has a simple but powerful syntax which makes sure

the data-files remain readable outside the Wiki and eases the creation of

structured texts.

All data is stored in plain text files no database is required.

Update to bugfix/security release 2022-07-29a. Includes security fix for

CVE-2022-3123.

* Thu Sep 15 2022 Artur Frenszek-Iwicki - 20200729a-1

- Update to new bugfix/security release 2020-07-29a (fixes CVE-2022-3123)

[ 1 ] Bug #2124259 - CVE-2022-3123 dokuwiki: Cross-site Scripting (XSS) - Reflected dokuwiki [fedora-all]

https://bugzilla.redhat.com/show_bug.cgi?id=2124259

su -c 'dnf upgrade --advisory FEDORA-2022-8c76e587f7' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/

List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Do not reply to spam, report it:

Change Log

References

Update Instructions

Severity
critical
Lowest
Low
Medium
High
Critical

Product: Fedora 35
Version: 20200729a
Release: 1.fc35
URL:
Summary: Standards compliant simple to use wiki

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here