-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.8 Date: Wed, 16 Feb 2011 21:02:42 +0100 Source: mailman Binary: mailman Architecture: alpha Version: 1:2.1.11-11+lenny2 Distribution: lenny-security Urgency: high Maintainer: alpha Build Daemon (goetz) Changed-By: Thijs Kinkhorst Description: mailman - Powerful, web-based mailing list manager Closes: 599833 Changes: mailman (1:2.1.11-11+lenny2) oldstable-security; urgency=high . * Upload to lenny-security. * CVE-2010-3089: cross-site scripting (XSS) vulnerabilities which can be exploited by list administrators (Closes: 599833). * CVE-2011-0707: Cross site scripting in subscriber names. Checksums-Sha1: ed38d3834d15cee94bf27e34c93cf50360c3d4c5 9559378 mailman_2.1.11-11+lenny2_alpha.deb Checksums-Sha256: 9207c30173d110d8546ad5269889a00844f09640f964d4ced849a7b80086fc1f 9559378 mailman_2.1.11-11+lenny2_alpha.deb Files: dcbb4791e34011648e57ecfc5b5bc7a1 9559378 mail optional mailman_2.1.11-11+lenny2_alpha.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.10 (GNU/Linux) iQEcBAEBAgAGBQJNXFbPAAoJEOxfUAG2iX57r7kIANG5NAiCZLySqUzqCuiq07oO SXLFW093HEtgtkLuzNFJhAuxqvepNinyAi/cspmfRoHpbXuQwSWNM6J9707F5D4M XyCn8azlcFr2Nfo7akighdm3kny5rOReR++xfun0syddMyAwv6P7zB27DDjYOUXu Vy85mI62A7unVvLVpbVF/uC01Qov3VlbvUtEpStDqee61eb/CYd60x79Myio+wjL ZY+70PB+oXRpKv+D8NcoKKV8IT7R9ns2P1K/EzB0a1n+mbfufJHd+q8vAIylcvvX GJAv0VjLbicZ2zCdo7NaMHBzD1rdtzW39kldA/vAoJwc9ys3nC6KWb5t50/5GUM= =SaCa -----END PGP SIGNATURE-----