UbuntuUpdates.org

Package "awstats"

Name: awstats

Description:

powerful and featureful web server log analyzer

Latest version: 7.8-2ubuntu0.22.04.1
Release: jammy (22.04)
Level: security
Repository: main
Homepage: http://awstats.sourceforge.net/

Links


Download "awstats"


Other versions of "awstats" in Jammy

Repository Area Version
base main 7.8-2
updates main 7.8-2ubuntu0.22.04.1

Changelog

Version: 7.8-2ubuntu0.22.04.1 2023-02-28 11:07:01 UTC

  awstats (7.8-2ubuntu0.22.04.1) jammy-security; urgency=medium

  * SECURITY UPDATE: cross site scripting
    - debian/patches/CVE-2022-46391.patch: fix XSS in hostinfo plugin due to
      printing whois response without proper checks.
    - CVE-2022-46391

 -- Fabian Toepfer <email address hidden> Mon, 27 Feb 2023 21:36:36 +0100

CVE-2022-46391 AWStats 7.x through 7.8 allows XSS in the hostinfo plugin due to printing a response from Net::XWhois without proper checks.



About   -   Send Feedback to @ubuntu_updates