[Mailman-Announce] Mailman 2.1.18 Security fix release

Mark Sapiro mark at msapiro.net
Tue Jul 10 21:03:06 EDT 2018


This is a heads up. There is a recently identified minor security issue
in Mailman 2.1.27 and earlier. This is not something that allows
permanent compromise or information leak from your site, but is
something that needs to be fixed. This issue has been given CVE ID
CVE-2018-13796.

I plan to release Mailman 2.1.28 on 24 July, 2018 along with details of
the issue and a patch to apply to earlier releases.

This is just notification of that plan for those that need to plan ahead.

Also, if you are a Mailman translator and you have any updates to your
translation, please submit them in some form prior to 24 July so they
can be incorporated in the release.

-- 
Mark Sapiro <mark at msapiro.net>        The highway is for gamblers,
San Francisco Bay Area, California    better use your sense - B. Dylan

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 195 bytes
Desc: OpenPGP digital signature
URL: <http://mail.python.org/pipermail/mailman-announce/attachments/20180710/a72bcba1/attachment.sig>


More information about the Mailman-announce mailing list