~ubuntu-security/ubuntu-cve-tracker/master

« back to all changes in this revision

Viewing changes to retired/CVE-2012-4277

  • Committer: Steve Beattie
  • Date: 2019-02-19 06:18:27 UTC
  • Revision ID: sbeattie@ubuntu.com-20190219061827-oh57fzcfc1u9dlfk
The ubuntu-cve-tracker project has been converted to git.

Please use 'git clone https://git.launchpad.net/ubuntu-cve-tracker' to
get the converted tree.

Show diffs side-by-side

added added

removed removed

Lines of Context:
1
 
Candidate: CVE-2012-4277
2
 
PublicDate: 2012-08-13
3
 
References:
4
 
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-4277
5
 
 http://www.securitytracker.com/id?1027061
6
 
 http://smarty-php.googlecode.com/svn/trunk/distribution/change_log.txt
7
 
 http://secunia.com/advisories/49164
8
 
 http://code.google.com/p/smarty-php/source/detail?r=4612
9
 
 http://code.google.com/p/smarty-php/issues/detail?id=98&can=1
10
 
Description:
11
 
 Cross-site scripting (XSS) vulnerability in the
12
 
 smarty_function_html_options_optoutput function in
13
 
 distribution/libs/plugins/function.html_options.php in Smarty before 3.1.8
14
 
 allows remote attackers to inject arbitrary web script or HTML via
15
 
 unspecified vectors.
16
 
Ubuntu-Description:
17
 
Notes:
18
 
Bugs:
19
 
Priority: medium
20
 
Discovered-by:
21
 
Assigned-to:
22
 
 
23
 
Patches_smarty3:
24
 
upstream_smarty3: released (3.1.10-1)
25
 
hardy_smarty3: DNE
26
 
lucid_smarty3: DNE
27
 
natty_smarty3: ignored (reached end-of-life)
28
 
oneiric_smarty3: ignored (reached end-of-life)
29
 
precise_smarty3: ignored (reached end-of-life)
30
 
precise/esm_smarty3: DNE (precise was needs-triage)
31
 
quantal_smarty3: not-affected (3.1.10-1)
32
 
raring_smarty3: not-affected (3.1.10-1)
33
 
saucy_smarty3: not-affected (3.1.10-1)
34
 
trusty_smarty3: not-affected (3.1.10-1)
35
 
utopic_smarty3: not-affected (3.1.10-1)
36
 
vivid_smarty3: not-affected (3.1.10-1)
37
 
vivid/stable-phone-overlay_smarty3: DNE
38
 
vivid/ubuntu-core_smarty3: DNE
39
 
wily_smarty3: not-affected (3.1.10-1)
40
 
xenial_smarty3: not-affected (3.1.10-1)
41
 
yakkety_smarty3: not-affected (3.1.10-1)
42
 
zesty_smarty3: not-affected (3.1.10-1)
43
 
devel_smarty3: not-affected (3.1.10-1)