mailman 1:2.1.26-1ubuntu0.1 source package in Ubuntu

Changelog

mailman (1:2.1.26-1ubuntu0.1) bionic-security; urgency=medium

  * SECURITY UPDATE: XSS vulnerability
    - debian/patches/93_CVE-2018-0618.patch: avoiding
      injections in Mailman/Gui/General.py, Mailman/Utils.py,
      Mailman/Gui/GUIBase.py
    - CVE-2018-0618
  * SECURITY UPDATE: Arbitrary text injection
    - debian/patches/94_CVE-2018-13796.patch: check for injections
      in Mailmain/Utils.py.
    - CVE-2018-13796
  * SECURITY UPDATE: XSS vulnerability
    - debian/patches/CVE-2020-12137.diff: use .bin extension
      for scrubbed application/octet-stream files in
      Mailman/Handlers/Scrubber.py.
    - CVE-2020-12137

 -- <email address hidden> (Leonidas S. Barbosa)  Tue, 28 Apr 2020 15:41:09 -0300

Upload details

Uploaded by:
Leonidas S. Barbosa
Uploaded to:
Bionic
Original maintainer:
Ubuntu Developers
Architectures:
any
Section:
mail
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
mailman_2.1.26.orig.tar.gz 8.8 MiB 240177e1ef561ede88d7b48283c3835f39bbd0b1ae19100d3520cbe43058339f
mailman_2.1.26-1ubuntu0.1.debian.tar.xz 101.8 KiB 35e027b948320ef10fb61b4e5b01c523ae3a208b78091d2833003297b95bd478
mailman_2.1.26-1ubuntu0.1.dsc 2.1 KiB a33b303aa2e7df9335850ee8db54b4f684570c25158be6c0850ab07a9a3406ba

View changes file

Binary packages built by this source

mailman: Web-based mailing list manager (legacy branch)

 The GNU Mailing List Manager, which manages email discussion lists.
 Mailman gives each mailing list a web page, and allows users to
 subscribe, unsubscribe, etc. over the web. The list manager can
 administer his or her list entirely from the web.
 .
 Mailman also integrates most things people want to do with mailing
 lists, including archiving, mail <-> news gateways, and so on. It
 has all of the features you expect from such a product, plus
 integrated support for the web (including web based archiving),
 automated bounce handling and integrated spam prevention.
 .
 Note that this package contains the legacy (2.x) branch of Mailman.
 All new development happens in the Mailman 3 suite, available in
 Debian via the mailman3 metapackage.

mailman-dbgsym: debug symbols for mailman