Boletines de Vulnerabilidades

DSA-4108 mailman - security update

   
Software afectado Debian
 
Calum Hutton and the Mailman team discovered a cross site scripting andinformation leak vulnerability in the user options page. A remoteattacker could use a crafted URL to steal cookie information or tofish for whether a user is subscribed to a list with a private roster.

More info:

https://www.debian.org/security/2018/dsa-4108