Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 2 Nov 2012 19:10:25 +0100 (CET)
From:      Jimmy Olgeni <olgeni@FreeBSD.org>
To:        Eitan Adler <eadler@FreeBSD.org>
Cc:        svn-ports-head@FreeBSD.org, svn-ports-all@FreeBSD.org, ports-committers@FreeBSD.org
Subject:   Re: svn commit: r306840 - head/sysutils/webmin
Message-ID:  <alpine.BSF.2.00.1211021908280.50739@backoffice.colby.local>
In-Reply-To: <CAF6rxg=er8opv%2BeSmpFObTLw8UWFMR4K3uV-UD6Pj2qXXUvh=g@mail.gmail.com>
References:  <201211021104.qA2B40ew006611@svn.freebsd.org> <CAF6rxg=er8opv%2BeSmpFObTLw8UWFMR4K3uV-UD6Pj2qXXUvh=g@mail.gmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help

Hi,

On Fri, 2 Nov 2012, Eitan Adler wrote:

> On 2 November 2012 07:04, Jimmy Olgeni <olgeni@freebsd.org> wrote:
>> Author: olgeni
>> Date: Fri Nov  2 11:03:59 2012
>> New Revision: 306840
>> URL: http://svn.freebsd.org/changeset/ports/306840
>>
>> Log:
>>   Upgrade module: passwd-1.600-5.
>>
>>   According to the release notes, "fix for potential XSS attack via
>>   real name field."
>
> Can you please add a vuxml for this? Security issues need to be documented.

I just added it but unfortunately there's no CVE reference so far, 
only a small reference on the Webmin website. I'll keep an eye on that 
in case more information will be available.

-- 
jimmy



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?alpine.BSF.2.00.1211021908280.50739>