Oval Definition:oval:com.redhat.rhsa:def:20050090
Revision Date:2005-02-15Version:502
Title:RHSA-2005:090: htdig security update (Moderate)
Description:The ht://Dig system is a Web search and indexing system for a small domain or intranet.

Michael Krax reported a cross-site scripting bug affecting htdig. An attacker could construct a carefully crafted URL which can cause a web browser to execute malicious script once visited. The Common Vulnerabilities and Exposures project has assigned the name CAN-2005-0085 to this issue.

Users of htdig should upgrade to these updated packages, which contain a backported patch, and are not vulnerable to this issue.
Family:unixClass:patch
Status:Reference(s):CVE-2005-0085
RHSA-2005:090-01
Platform(s):Red Hat Enterprise Linux 4
Product(s):
Definition Synopsis
  • Red Hat Enterprise Linux 4 is installed
  • AND Package Information
  • htdig is earlier than 3:3.2.0b6-3.40.1
  • AND htdig is signed with Red Hat master key
  • OR
  • htdig-web is earlier than 3:3.2.0b6-3.40.1
  • AND htdig-web is signed with Red Hat master key
  • BACK