UbuntuUpdates.org

Bugs fixes in "gosa"

Origin Bug number Title Date fixed
CVE CVE-2019-14466 The GOsa_Filter_Settings cookie in GONICUS GOsa 2.7.5.2 is vulnerable to PHP objection injection, which allows a remote authenticated attacker to per 2020-10-28
CVE CVE-2019-11187 Incorrect Access Control in the LDAP class of GONICUS GOsa through 2019-04-11 allows an attacker to log into any account with a username containing t 2020-10-28
CVE CVE-2018-1000528 GONICUS GOsa version before commit 56070d6289d47ba3f5918885954dcceb75606001 contains a Cross Site Scripting (XSS) vulnerability in change password fo 2020-10-28
CVE CVE-2019-14466 The GOsa_Filter_Settings cookie in GONICUS GOsa 2.7.5.2 is vulnerable to PHP objection injection, which allows a remote authenticated attacker to per 2020-10-28
CVE CVE-2019-11187 Incorrect Access Control in the LDAP class of GONICUS GOsa through 2019-04-11 allows an attacker to log into any account with a username containing t 2020-10-28
CVE CVE-2018-1000528 GONICUS GOsa version before commit 56070d6289d47ba3f5918885954dcceb75606001 contains a Cross Site Scripting (XSS) vulnerability in change password fo 2020-10-28
Debian 940719 gosa: homepage field is outdated, server not found 2020-04-22
Debian 955314 gosa depends on php-recode which has been dropped 2020-04-22
Debian 717743 gosa: fails to enable with apach2 - Debian Bug report logs 2014-04-14
Debian 715441 gosa: unowned dangling symlink after purge (policy 6.8, 10.8): /usr/share/gosa/bin/convert -> /usr/bin/convert - Debian Bug report logs 2014-04-14
Debian 714922 gosa-plugin-mail: Files in /etc/gosa/etc/ should be in /etc/gosa/ - Debian Bug report logs 2014-04-14
Debian 718859 gosa: Allow installation with php5-fpm package installed of php5-cgi - Debian Bug report logs 2014-04-14
Debian 718857 gosa: Gosa should also be installable with php5-mysqlnd instead of php5-mysql - Debian Bug report logs 2014-04-14
Debian 722358 gosa: depends on transitional/NBS ttf-liberation - Debian Bug report logs 2014-04-14
Debian 629318 gosa: Generic user information: Incorrect Warning - Debian Bug report logs 2011-12-18
Debian 629315 gosa ldap-manager csv-import should as minimum only ask for given- and surname. - Debian Bug report logs 2011-12-18
Debian 624209 gosa: [INTL:cs] Wrong Czech PO Debconf file name - Debian Bug report logs 2011-12-18
Debian 628223 [INTL:da] Danish translation of the debconf templates gosa - Debian Bug report logs 2011-12-18



About   -   Send Feedback to @ubuntu_updates