LWN.net Logo

fckeditor: missing input sanitizing

Package(s):fckeditor CVE #(s):CVE-2009-2265
Created:July 17, 2009 Updated:July 22, 2009
Description: From the Debian advisory: Vinny Guido discovered that multiple input sanitizing vulnerabilities in Fckeditor, a rich text web editor component, may lead to the execution of arbitrary code.
Alerts:
Fedora FEDORA-2009-7794 2009-07-19
Fedora FEDORA-2009-7761 2009-07-19
Debian DSA-1836-1 2009-07-16

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds