[Secure-testing-team] Bug#746626: sks: non-persistent XSS

Salvatore Bonaccorso carnil at debian.org
Fri May 2 04:11:43 UTC 2014


Source: sks
Severity: important
Tags: security upstream fixed-upstream

Hi

A non-persistent XSS vulnerability was found in sks. A CVE is not
(yet) assigned. See [0], [1] and [2] for details:

 [0] http://www.openwall.com/lists/oss-security/2014/05/01/16
 [1] https://bitbucket.org/skskeyserver/sks-keyserver/issue/26/unfiltered-xss
 [2] https://bugzilla.mozilla.org/show_bug.cgi?id=952077

Regards,
Salvatore



More information about the Secure-testing-team mailing list