notbugAs an Amazon Associate I earn from qualifying purchases.
Want a good read? Try FreeBSD Mastery: Jails (IT Mastery Book 15)
All times are UTC
Ukraine
non port: german/bugzilla/distinfo

Number of commits found: 9

Thursday, 21 Feb 2013
08:48 ohauer search for other commits by this committer
- update german bugzilla templates
Original commitRevision:312710 
Friday, 16 Nov 2012
09:03 ohauer search for other commits by this committer
- update german and russian bugzilla templates to official new versions
- remove hotfixes from german templates

Feature safe: yes
Original commitRevision:307474 
Wednesday, 5 Sep 2012
19:05 ohauer search for other commits by this committer
- update bugzilla language tempates
Original commitRevision:303719 
Sunday, 29 Jul 2012
09:58 ohauer search for other commits by this committer
- update to official release (just published)
Original commit
Tuesday, 10 Apr 2012
05:15 ohauer search for other commits by this committer
- update to 4.0.5

Vulnerability Details
=====================

Class:       Cross-Site Request Forgery
Versions:    4.0.2 to 4.0.4, 4.1.1 to 4.2rc2
Fixed In:    4.0.5, 4.2
Description: Due to a lack of validation of the enctype form
             attribute when making POST requests to xmlrpc.cgi,
             a possible CSRF vulnerability was discovered. If a user
             visits an HTML page with some malicious HTML code in it,
             an attacker could make changes to a remote Bugzilla installation
             on behalf of the victim's account by using the XML-RPC API
             on a site running mod_perl. Sites running under mod_cgi
             are not affected. Also the user would have had to be
             already logged in to the target site for the vulnerability
             to work.
References:  https://bugzilla.mozilla.org/show_bug.cgi?id=725663
CVE Number:  CVE-2012-0453

Approved by:    skv (implicit)
Original commit
Monday, 13 Feb 2012
21:14 ohauer search for other commits by this committer
- update german bugzilla templates
Original commit
Thursday, 5 Jan 2012
17:30 ohauer search for other commits by this committer
- update german bugzilla translations
Original commit
Sunday, 14 Aug 2011
18:56 ohauer search for other commits by this committer
- update german bugzilla language templates
Original commit
Saturday, 11 Jun 2011
19:04 ohauer search for other commits by this committer
- add German localization for Bugzilla bug tracking system
Original commit

Number of commits found: 9