Bug 428806

Summary: CVE-2007-6306 JFreeChart: XSS vulnerabilities in the image map feature [rhn_satellite_4.2]
Product: Red Hat Satellite 5 Reporter: Marc Schoenefeld <mschoene>
Component: OtherAssignee: Miroslav Suchý <msuchy>
Status: CLOSED CURRENTRELEASE QA Contact: Brandon Perkins <bperkins>
Severity: medium Docs Contact:
Priority: medium    
Version: 420CC: pthomas
Target Milestone: ---Keywords: Security
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Fixed In Version: sat423 Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2008-06-30 18:29:19 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On:    
Bug Blocks: 421081, 135141, 439866    

Description Marc Schoenefeld 2008-01-15 11:54:11 UTC
rhn_satellite_4.2 tracking bug: see blocks bug list for full details of the security issue(s).

This bug is never intended to be made public, please put any public notes in the 'blocks' bugs.

For the security issues handling process overview see: http://intranet.corp.redhat.com/ic/intranet/SecurityZStreamFAQ

[bug automatically created by: add-tracking-bugs]

Comment 1 Miroslav Suchý 2008-04-16 11:46:44 UTC
Built jfreechart-0.9.20-3.rhn.noarch.rpm (promoted from 5.0.2, where I fix it).


Comment 2 Miroslav Suchý 2008-04-29 12:18:50 UTC
QA push for 4.2.3 complete: satellite-4.2.3-1 and proxy-4.2.3-1 are
now on webqa. Note that there is _no_ ISO planned for the 4.2.3
release.

Developers, please move your bugs ON_QA.

Comment 5 Preethi Thomas 2008-06-30 18:29:19 UTC
4.2.3 Satellite is now GA, bugs Closed for Current Release.