QID 198600
Date Published: 2021-12-09
QID 198600: Ubuntu Security Notification for Mailman Vulnerability (USN-5180-1)
Mailman incorrectly handled csrf tokens.
A remotelist member or moderator could possibly use their own token to craft anadmin request csrf attack and set a new admin password or make otherchanges.
Solution
Refer to Ubuntu security advisory USN-5180-1 for updates and patch information.
Vendor References
- USN-5180-1 -
ubuntu.com/security/notices/USN-5180-1
CVEs related to QID 198600
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| USN-5180-1 | Ubuntu Linux |
|