Candidate: CVE-2011-0003 PublicDate: 2011-01-11 03:00:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0003 https://bugzilla.wikimedia.org/show_bug.cgi?id=26561 Description: MediaWiki before 1.16.1, when user or site JavaScript or CSS is enabled, allows remote attackers to conduct clickjacking attacks via unspecified vectors. Ubuntu-Description: Notes: jdstrand> patch in bug is patch from upstream Bugs: https://bugs.launchpad.net/ubuntu/+source/mediawiki/+bug/697451 Priority: medium Discovered-by: Assigned-to: CVSS: Patches_mediawiki: upstream_mediawiki: released (1:1.15.5-2) dapper_mediawiki: ignored (reached end of life) hardy_mediawiki: ignored (reached end of life) karmic_mediawiki: ignored (reached end-of-life) lucid_mediawiki: ignored (reached end-of-life) maverick_mediawiki: ignored (reached end-of-life) natty_mediawiki: not-affected (1:1.15.5-2) oneiric_mediawiki: not-affected (1:1.15.5-2) precise_mediawiki: not-affected (1:1.15.5-2) quantal_mediawiki: not-affected (1:1.15.5-2) raring_mediawiki: not-affected (1:1.15.5-2) saucy_mediawiki: not-affected (1:1.15.5-2) devel_mediawiki: not-affected (1:1.15.5-2)