Bug 188122 (CVE-2006-1498) - Security Vulnerability: CVE-2006-1498
Summary: Security Vulnerability: CVE-2006-1498
Keywords:
Status: CLOSED CURRENTRELEASE
Alias: CVE-2006-1498
Product: Fedora
Classification: Fedora
Component: mediawiki
Version: 3
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Roozbeh Pournader
QA Contact: Fedora Extras Quality Assurance
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2006-04-06 09:07 UTC by Hans de Goede
Modified: 2007-11-30 22:11 UTC (History)
3 users (show)

Fixed In Version: 1.5.8-1
Doc Type: Bug Fix
Doc Text:
Clone Of:
Environment:
Last Closed: 2006-04-06 20:30:56 UTC
Type: ---
Embargoed:


Attachments (Terms of Use)

Description Hans de Goede 2006-04-06 09:07:44 UTC
See:

http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-1498

Upgrading to 1.5.8 should fix this, this probably affects other repors /
releases then Development too.

Comment 1 Ville Skyttä 2006-04-06 16:50:26 UTC
1.5.8 has been in all FE4+ repos since April 3rd based on file timestamps.

Comment 2 Hans de Goede 2006-04-06 17:03:33 UTC
My bad I ran yum list "*mediawiki*" and that said 1.5.7, but that is because
when run as user yum doesn't update its metadata.

Was mediawiki in FE3 too? Ifso 1.5.8 or another fix should be pushed for FE3,
even though FE3 is eol, security fixes should still be applied by package
maintainers. (other updates should not).



Comment 3 Chris Ricker 2006-04-06 17:14:45 UTC
mediawiki is only in FE-4, FE-5, and devel

[kaboom@fc5test extras]$ cvs co mediawiki
<snip>
[kaboom@fc5test extras]$ ls mediawiki/
common  CVS  devel  FC-4  FC-5  import.log  Makefile
[kaboom@fc5test extras]$ 


Note You need to log in before you can comment on or make changes to this bug.