MGASA-2015-0488

Source
https://advisories.mageia.org/MGASA-2015-0488.html
Import Source
https://advisories.mageia.org/MGASA-2015-0488.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2015-0488
Related
Published
2015-12-28T19:23:26Z
Modified
2015-12-28T19:13:44Z
Summary
Updated perl-HTML-Scrubber packages fix CVE-2015-5667
Details

Updated perl-HTML-Scrubber package fixes security vulnerability:

Cross-site scripting (XSS) vulnerability in the HTML-Scrubber module before 0.15 for Perl, when the comment feature is enabled, allows remote attackers to inject arbitrary web script or HTML via a crafted comment.

References
Credits

Affected packages

Mageia:5 / perl-HTML-Scrubber

Package

Name
perl-HTML-Scrubber
Purl
pkg:rpm/mageia/perl-HTML-Scrubber?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.110.0-6.1.mga5

Ecosystem specific

{
    "section": "core"
}