Red Hat Security Advisory 2015-1462-01

Discussion in 'News Aggregator' started by Packet Storm, 23 Jul 2015.

  1. Packet Storm

    Packet Storm Guest

    Red Hat Security Advisory 2015-1462-01 - Two cross-site scripting flaws were found in jQuery, which impacted the Identity Management web administrative interface, and could allow an authenticated user to inject arbitrary HTML or web script into the interface. Note: The IdM version provided by this update no longer uses jQuery. The ipa-server-install, ipa-replica-install, and ipa-client-install utilities are not supported on machines running in FIPS-140 mode. Previously, IdM did not warn users about this. Now, IdM does not allow running the utilities in FIPS-140 mode, and displays an explanatory message.

    Continue reading...
     

Share This Page

Loading...