To download packages, you need to log in and have a qualifying subscription.
gpp_maybe
Security update for mailman
SUSE-SLE-SAP-12-SP4-2022-1886
This update for mailman fixes the following issues: - CVE-2021-44227: Preventing list moderator or list member accessing the admin UI (bsc#1193316). - CVE-2021-43332: Preventing list moderator from cracking the list admin password encrypted in a CSRF token (bsc#1192741). - CVE-2021-43331: Fixed XSS in Cgi/options.py (bsc#1192735). - CVE-2021-42096: Add protection against remote privilege escalation via csrf_token derived from admin password (bsc#1191959).
-
Release DateMay 31 2022
-
ReferencesBugzilla: 1192735, 1192741, 1191959, 1193316
CVEs: CVE-2021-43331, CVE-2021-42096, CVE-2021-43332, CVE-2021-44227 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Server for SAP Applications 12.4 ppc64le
-
Packages
SUSE Linux Enterprise Server for SAP Applications 12.4 x86_64
-
Packages