[pkg-horde] Bug#585165: Bug#585165: CVE-2010-1916: Security issue in Xinha

Gregory Colpart reg at evolix.fr
Mon Jun 21 23:48:00 UTC 2010


Hi,

On Wed, Jun 09, 2010 at 07:05:51PM +0200, Moritz Muehlenhoff wrote:
> Horde includes a copy of Xinha, for which the following security
> issue was reported:
> 
> http://php-security.org/2010/05/10/mops-2010-019-serendipity-wysiwyg-editor-plugin-configuration-injection-vulnerability/index.h+tml
> http://xinha.webfactional.com/ticket/1518
> 
> Please check if your code copy is affected and update the internal copy.

I think code copy of xinha in Horde is not affected because there
is no PHP code from Xinha on it. Majority of Xinha plugins are
not present.

Regards,
-- 
Gregory Colpart <reg at evolix.fr>  GnuPG:1024D/C1027A0E
Evolix - Informatique et Logiciels Libres http://www.evolix.fr/





More information about the pkg-horde-hackers mailing list