Login
Newsletter
Werbung

Sicherheit: Cross-Site Scripting in CouchDB
Aktuelle Meldungen Distributionen
Name: Cross-Site Scripting in CouchDB
ID: FEDORA-2014-15967
Distribution: Fedora
Plattformen: Fedora 21
Datum: Fr, 12. Dezember 2014, 07:49
Referenzen: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-5312
Applikationen: CouchDB

Originalnachricht

Name        : couchdb
Product : Fedora 21
Version : 1.6.1
Release : 4.fc21
URL : http://couchdb.apache.org/
Summary : A document database server, accessible via a RESTful JSON API
Description :
Apache CouchDB is a distributed, fault-tolerant and schema-free
document-oriented database accessible via a RESTful HTTP/JSON API.
Among other features, it provides robust, incremental replication
with bi-directional conflict detection and resolution, and is
queryable and indexable using a table-oriented view engine with
JavaScript acting as the default view definition language.

-------------------------------------------------------------------------------
-
Update Information:

* Fix CVE-2010-5312 couchdb: jquery-ui: XSS vulnerability in jQuery.ui.dialog
title option (rhbz #1166767)
-------------------------------------------------------------------------------
-
ChangeLog:

* Thu Nov 27 2014 Peter Lemenkov <lemenkov@gmail.com> - 1.6.1-4
- Fix CVE-2010-5312 couchdb: jquery-ui: XSS vulnerability in jQuery.ui.dialog
title option (rhbz #1166767)
* Fri Nov 14 2014 Peter Lemenkov <lemenkov@gmail.com> - 1.6.1-3
- Fix systemd unit file permissions (755 -> 644)
- Remove EL5,EL6 support
-------------------------------------------------------------------------------
-
References:

[ 1 ] Bug #1166041 - CVE-2010-5312 jquery-ui: XSS vulnerability in
jQuery.ui.dialog title option
https://bugzilla.redhat.com/show_bug.cgi?id=1166041
-------------------------------------------------------------------------------
-

This update can be installed with the "yum" update program. Use
su -c 'yum update couchdb' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
-------------------------------------------------------------------------------
-
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce
Pro-Linux
Pro-Linux @Facebook
Neue Nachrichten
Werbung