Fedora 10 Security Update: viewvc-1.0.9-1.fc10

37
Article Source Fedora 10 Security Updates
August 12, 2009, 1:23 pm

Resolved Bugs
513006 – “allow_tar” option does not work

CHANGES in 1.0.9:

– security fix: validate the ‘view’ parameter to avoid XSS attack

– security fix: avoid printing illegal parameter names and values Also includes: Patch by Patrick Monnerat to make allow_tar work on F-10…

Read More