• [SECURITY] [DSA 3496-1] php-horde-core security update

    From Salvatore Bonaccorso@1:229/2 to All on Sun Feb 28 22:30:02 2016
    From: [email protected]

    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA512

    - ------------------------------------------------------------------------- Debian Security Advisory DSA-3496-1 [email protected] https://www.debian.org/security/ Salvatore Bonaccorso February 28, 2016 https://www.debian.org/security/faq
    - -------------------------------------------------------------------------

    Package : php-horde-core
    CVE ID : CVE-2015-8807
    Debian Bug : 813590

    It was discovered that php-horde-core, a set of classes providing the
    core functionality of the Horde Application Framework, is prone to a
    cross-site scripting vulnerability.

    For the stable distribution (jessie), this problem has been fixed in
    version 2.15.0+debian0-1+deb8u1.

    For the testing distribution (stretch), this problem has been fixed
    in version 2.22.4+debian0-1.

    For the unstable distribution (sid), this problem has been fixed in
    version 2.22.4+debian0-1.

    We recommend that you upgrade your php-horde-core packages.

    Further information about Debian Security Advisories, how to apply
    these updates to your system and frequently asked questions can be
    found at: https://www.debian.org/security/

    Mailing list: [email protected]
    -----BEGIN PGP SIGNATURE-----
    Version: GnuPG v1

    iQIcBAEBCgAGBQJW02QGAAoJEAVMuPMTQ89EzVcP/27y/FUf7AF8eq/ppqmj8DNd 1f1vRcJrRx5PYg6l/prAO49rRw6iUM8VlCXf7ONea05o4FAnEAhhJpE6tPTAJp7z Ku7HUOUFA4kxTfjjgdU3xRDyqWXN7tYvA5xwGQoHejt2Ocqr+HDTlz8fIrHKO+lv Pn64MBK2MFEa4yFbL3EpgDXqcWr4uolNsG+N7O9WdPA4f2NcU/ZGmNV8GeFkWVio jLpQ0WMJyzU7mvn6hrCaWCGIqJS+Z94bPgjL5vmUt+VyYj9z+XGpbUytYq/S/IOi YqIJvLjjQt2aEMON3ygijyLkyPDfMa8YOMnovYxtbbWtI143RncOIrINgN943kfS ePr6NEvAhEZKIXg4RJCipGNZo7ThSjk+BLH14nlghVewBs/X1FaGrHISSGD28mpE 1Ya+cAiIQIjMCItH+8n2Fj8TwzmPO78OCFENws4RGrEN2hiKUQ8kmlxJJrvNI7NP ZW85AxXB3pBF2sFlgw5vGZ6ImjfLL530tysG8a/Ek0s5aXz1vq2d5qy3EOCM3sFn hYI6/M9ZKmfMqUSoNoS05DlB2u2LyFDpkAz/Ug0HPaQiLlsAiy3ce/K+gt1/k9Ku mJRkgs+XzlzKDYdCgdUWgtIyTc62iZ9mEeOLWjtu27Hik1vu63eFGjkzFmBXhjfl BJeUeO6/Omfrf+tW64cT
    =Jf4t
    -----END PGP SIGNATURE-----

    --- SoupGate-Win32 v1.05
    * Origin: you cannot sedate... all the things you hate (1:229/2)