Summary: | CVE-2013-4181 ovirt-engine: RedirectServlet cross-site scripting flaw | ||
---|---|---|---|
Product: | [Retired] oVirt | Reporter: | Petr Matousek <pmatouse> |
Component: | ovirt-engine-core | Assignee: | Alexander Wels <awels> |
Status: | CLOSED CURRENTRELEASE | QA Contact: | |
Severity: | medium | Docs Contact: | |
Priority: | medium | ||
Version: | unspecified | CC: | acathrow, ecohen, iheim, mburns, yeylon |
Target Milestone: | --- | ||
Target Release: | --- | ||
Hardware: | Unspecified | ||
OS: | Unspecified | ||
Whiteboard: | ux | ||
Fixed In Version: | Doc Type: | Bug Fix | |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | 2013-09-23 07:26:39 UTC | Type: | Bug |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Bug Depends On: | |||
Bug Blocks: | 988774 |
Description
Petr Matousek
2013-09-12 14:53:24 UTC
einav - this gerrit ID is for master. for bug to be ON_QA it should be in the 3.3 branch (and have a build with it? (In reply to Itamar Heim from comment #1) > einav - this gerrit ID is for master. > for bug to be ON_QA it should be in the 3.3 branch (and have a build with it? I haven't actually put it on ON_QA, nevertheless: - patch has been merged to every possible branch, not only "master" (will update the External Tracker shortly) - http://lists.ovirt.org/pipermail/users/2013-September/016268.html (3.2 Async announcement) - http://lists.ovirt.org/pipermail/users/2013-September/016269.html (3.3 announcement) closing as this should be in 3.3 (doing so in bulk, so may be incorrect) |