[ubuntu/oracular-updates] spip 4.3.1+dfsg-1ubuntu0.1 (Accepted)

Ubuntu Archive Robot ubuntu-archive-robot at lists.canonical.com
Mon Mar 3 22:58:48 UTC 2025


spip (4.3.1+dfsg-1ubuntu0.1) oracular-security; urgency=medium

  * SECURITY UPDATE: Cross site scripting
    - debian/patches/CVE-2022-23638.patch: Refactor sanitization code
    - CVE-2022-23638
  * SECURITY UPDATE: Command injection
    - debian/patches/CVE-2024-8517.patch: Add check to remove invalid 
      keys from _FILES array
    - CVE-2024-8517

Date: 2025-02-24 05:03:11.679690+00:00
Changed-By: Bruce Cable <bruce.cable at canonical.com>
Signed-By: Ubuntu Archive Robot <ubuntu-archive-robot at lists.canonical.com>
https://launchpad.net/ubuntu/+source/spip/4.3.1+dfsg-1ubuntu0.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the oracular-changes mailing list