Bugzilla – Bug 1171363
VUL-1: CVE-2020-12108: mailman: arbitrary content injection in options.py
Last modified: 2020-10-27 14:13:59 UTC
CVE-2020-12108 /options/mailman in GNU Mailman before 2.1.31 allows Arbitrary Content Injection. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2020-12108 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-12108 https://mail.python.org/pipermail/mailman-announce/ https://code.launchpad.net/mailman https://bugs.launchpad.net/mailman/+bug/1873722
Tracked as affected: SLE10-SP3 SLE11 SLE12
This is an autogenerated message for OBS integration: This bug (1171363) was mentioned in https://build.opensuse.org/request/show/802968 15.1 / mailman
openSUSE-SU-2020:0661-1: An update that solves one vulnerability and has one errata is now available. Category: security (moderate) Bug References: 1171363,682920 CVE References: CVE-2020-12108 Sources used: openSUSE Leap 15.1 (src): mailman-2.1.29-lp151.3.11.1
An update workflow for this issue was started. This issue was rated as moderate. Please submit fixed packages until 2020-06-12. When done, reassign the bug to security-team@suse.de. https://swamp.suse.de/webswamp/wf/64460
openSUSE-SU-2020:0764-1: An update that solves one vulnerability and has one errata is now available. Category: security (moderate) Bug References: 1171363,682920 CVE References: CVE-2020-12108 Sources used: openSUSE Backports SLE-15-SP1 (src): mailman-2.1.29-bp151.5.9.1
released
This is an autogenerated message for OBS integration: This bug (1171363) was mentioned in https://build.opensuse.org/request/show/842196 15.2 / mailman
This is an autogenerated message for OBS integration: This bug (1171363) was mentioned in https://build.opensuse.org/request/show/842285 15.2 / mailman
openSUSE-SU-2020:1707-1: An update that fixes three vulnerabilities is now available. Category: security (moderate) Bug References: 1171363,1173369 CVE References: CVE-2020-12108,CVE-2020-12137,CVE-2020-15011 JIRA References: Sources used: openSUSE Leap 15.2 (src): mailman-2.1.34-lp152.7.3.1
openSUSE-SU-2020:1752-1: An update that fixes three vulnerabilities is now available. Category: security (moderate) Bug References: 1171363,1173369 CVE References: CVE-2020-12108,CVE-2020-12137,CVE-2020-15011 JIRA References: Sources used: openSUSE Backports SLE-15-SP2 (src): mailman-2.1.34-bp152.7.3.1