mailman 1:2.1.20-1ubuntu0.4 source package in Ubuntu

Changelog

mailman (1:2.1.20-1ubuntu0.4) xenial-security; urgency=medium

  * SECURITY UPDATE: XSS vulnerability
    - debian/patches/93_CVE-2018-0618.patch: avoiding
      injections in Mailman/Gui/General.py, Mailman/Utils.py,
      Mailman/Gui/GUIBase.py
    - CVE-2018-0618
  * SECURITY UPDATE: Arbitrary text injection
    - debian/patches/94_CVE-2018-13796.patch: check for injections
      in Mailmain/Utils.py.
    - CVE-2018-13796
  * SECURITY UPDATE: XSS vulnerability
    - debian/patches/CVE-2020-12137.diff: use .bin extension
      for scrubbed application/octet-stream files in
      Mailman/Handlers/Scrubber.py.
    - CVE-2020-12137

 -- <email address hidden> (Leonidas S. Barbosa)  Tue, 28 Apr 2020 13:43:18 -0300

Upload details

Uploaded by:
Leonidas S. Barbosa
Uploaded to:
Xenial
Original maintainer:
Ubuntu Developers
Architectures:
any
Section:
mail
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
mailman_2.1.20.orig.tar.gz 8.8 MiB 522c2b5c5ab91398fdf949a8961162c314f6323cd1bfeb907e0fb2d88277711f
mailman_2.1.20-1ubuntu0.4.debian.tar.xz 105.0 KiB ec925ed2e527841a1554259bd00d23b9843f6f2c84de0ff4a2884ac84740fea0
mailman_2.1.20-1ubuntu0.4.dsc 2.1 KiB 1d03b14bbe906a562e8bd7847245af3b4221e89f7dc40f49056c26b4e71cbaa7

View changes file

Binary packages built by this source

mailman: Powerful, web-based mailing list manager

 The GNU Mailing List Manager, which manages email discussion lists
 much like Majordomo and Smartmail. Unlike most similar products,
 Mailman gives each mailing list a web page, and allows users to
 subscribe, unsubscribe, etc. over the web. Even the list manager can
 administer his or her list entirely from the web.
 .
 Mailman also integrates most things people want to do with mailing
 lists, including archiving, mail <-> news gateways, and so on. It
 has all of the features you expect from such a product, plus
 integrated support for the web (including web based archiving),
 automated bounce handling and integrated spam prevention.

mailman-dbgsym: debug symbols for package mailman

 The GNU Mailing List Manager, which manages email discussion lists
 much like Majordomo and Smartmail. Unlike most similar products,
 Mailman gives each mailing list a web page, and allows users to
 subscribe, unsubscribe, etc. over the web. Even the list manager can
 administer his or her list entirely from the web.
 .
 Mailman also integrates most things people want to do with mailing
 lists, including archiving, mail <-> news gateways, and so on. It
 has all of the features you expect from such a product, plus
 integrated support for the web (including web based archiving),
 automated bounce handling and integrated spam prevention.