Revision Date: | 2016-05-21 | Version: | 1 | Title: | CVE-2015-8834 on Ubuntu 16.04 LTS (xenial) - high. | Description: | Cross-site scripting (XSS) vulnerability in wp-includes/wp-db.php in WordPress before 4.2.2 allows remote attackers to inject arbitrary web script or HTML via a long comment that is improperly stored because of limitations on the MySQL TEXT data type. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-3440.
| Family: | unix | Class: | vulnerability | Status: | | Reference(s): | CVE-2015-8834
| Platform(s): | Ubuntu 16.04 LTS
| Product(s): | | Definition Synopsis | Ubuntu 16.04 LTS (xenial) is installed. AND Package Information
NOT wordpress package in xenial, while related to the CVE in some way, is not affected.
OR NOT wordpress-l10n package in xenial, while related to the CVE in some way, is not affected.
OR NOT wordpress-theme-twentyfifteen package in xenial, while related to the CVE in some way, is not affected.
OR NOT wordpress-theme-twentyfourteen package in xenial, while related to the CVE in some way, is not affected.
OR NOT wordpress-theme-twentysixteen package in xenial, while related to the CVE in some way, is not affected.
|
|