Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Date: Thu,  5 Feb 2015 11:52:19 -0500 (EST)
From: cve-assign@...re.org
To: kseifried@...hat.com
Cc: cve-assign@...re.org, oss-security@...ts.openwall.com
Subject: Re: CVE request for Zero-day in the Fancybox-for-WordPress Plugin

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

> http://blog.sucuri.net/2015/02/zero-day-in-the-fancybox-for-wordpress-plugin.html

> https://wordpress.org/plugins/fancybox-for-wordpress/changelog/

> 3.0.3
> 
> Fixed a security issue. (Thanks to mickaelb for reporting and
> Konstantin Kovshenin for providing the fix)

> https://plugins.trac.wordpress.org/changeset/1082625/

Use CVE-2015-1494.

- -- 
CVE assignment team, MITRE CVE Numbering Authority
M/S M300
202 Burlington Road, Bedford, MA 01730 USA
[ PGP key available through http://cve.mitre.org/cve/request_id.html ]
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.14 (SunOS)

iQEcBAEBAgAGBQJU059ZAAoJEKllVAevmvmsb6MH/0VWFcMUx7Uv5WgHDGGWvo6Y
zbiq6KPrIlkk6QRjLypJr4sose/zM1iV48LzYIg5qBiTuUf2Xg22VyzbeSCyYdbb
2j4rHvY5nAOpSJ7ziSWREd1igC7VmtQyhxHOUk1yKWIxN+XkjEhJbAulNXVLvh9f
aElP7NISaOvHJG7bJaN3UBaMVWlfuhBQ9D6vivL4vkE4UdBLw98iPftOsxN84l5o
KBVUkzmVEvC55i1pRe2s45opzic/jEE+AiQlipn6UuuPJYfeI+hvxq7rb24AwhCM
GuvanI7inBqF6YocW7iumBn2JPvkqmxBQAqImYDbUSMe9icPR9sM/MKahy2aBRs=
=xgTa
-----END PGP SIGNATURE-----

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.