[Mailman-Developers] correction: Mailman 2.1.28 Security fix release

Mark Sapiro mark at msapiro.net
Tue Jul 10 23:13:16 EDT 2018


Resending with correct subject (2.1.28, not 2.1.18)

On 7/10/18 6:03 PM, Mark Sapiro wrote:
> This is a heads up. There is a recently identified minor security issue
> in Mailman 2.1.27 and earlier. This is not something that allows
> permanent compromise or information leak from your site, but is
> something that needs to be fixed. This issue has been given CVE ID
> CVE-2018-13796.
> 
> I plan to release Mailman 2.1.28 on 24 July, 2018 along with details of
> the issue and a patch to apply to earlier releases.
> 
> This is just notification of that plan for those that need to plan ahead.
> 
> Also, if you are a Mailman translator and you have any updates to your
> translation, please submit them in some form prior to 24 July so they
> can be incorporated in the release.


-- 
Mark Sapiro <mark at msapiro.net>        The highway is for gamblers,
San Francisco Bay Area, California    better use your sense - B. Dylan

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 195 bytes
Desc: OpenPGP digital signature
URL: <http://mail.python.org/pipermail/mailman-developers/attachments/20180710/372e19b8/attachment.sig>


More information about the Mailman-Developers mailing list