[Pkg-owncloud-maintainers] Bug#701115: owncloud: multiple XSS vulnerabilities (oC-SA-2013-003)

Salvatore Bonaccorso carnil at debian.org
Thu Feb 21 19:06:05 UTC 2013


Package: owncloud
Severity: grave
Tags: security

Hi

Another owncloud advisory announcing multiple XSS vulnerabilities in
owncloud was released. See [1] for more details.

 [1]: http://owncloud.org/about/security/advisories/oC-SA-2013-003/

Assigned CVE's are:

CVE-2013-0297, CVE-2013-0307 (4.0 & 4.5)
CVE-2013-0298 (4.5)

Please include the relevant CVEs in the changelog when updating the
package.

The update for testing needs to go trough t-p-u, as version from
unstable cannot migrate.

Can you prepare fixed packages?

Regards,
Salvatore



More information about the Pkg-owncloud-maintainers mailing list