Candidate: CVE-2014-4510 PublicDate: 2014-10-06 23:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-4510 Description: Cross-site scripting (XSS) vulnerability in job.cc in apt-cacher-ng 0.7.26 allows remote attackers to inject arbitrary web script or HTML via a crafted URL. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_apt-cacher-ng: debian: https://alioth.debian.org/plugins/scmgit/cgi-bin/gitweb.cgi?p=apt-cacher-ng/apt-cacher-ng.git;a=commitdiff;h=d64e30c5a28a06f33d48bd3be94ea7435c5c86a8 upstream_apt-cacher-ng: released (0.7.26-2) lucid_apt-cacher-ng: ignored (reached end-of-life) precise_apt-cacher-ng: ignored (reached end-of-life) precise/esm_apt-cacher-ng: DNE (precise was needs-triage) saucy_apt-cacher-ng: ignored (reached end-of-life) trusty_apt-cacher-ng: ignored (reached end-of-life) trusty/esm_apt-cacher-ng: DNE (trusty was needed) utopic_apt-cacher-ng: not-affected (0.7.26-2) vivid_apt-cacher-ng: not-affected (0.7.26-2) vivid/stable-phone-overlay_apt-cacher-ng: DNE vivid/ubuntu-core_apt-cacher-ng: DNE wily_apt-cacher-ng: not-affected (0.7.26-2) xenial_apt-cacher-ng: not-affected (0.7.26-2) yakkety_apt-cacher-ng: not-affected (0.7.26-2) zesty_apt-cacher-ng: not-affected (0.7.26-2) artful_apt-cacher-ng: not-affected (0.7.26-2) bionic_apt-cacher-ng: not-affected (0.7.26-2) cosmic_apt-cacher-ng: not-affected (0.7.26-2) disco_apt-cacher-ng: not-affected (0.7.26-2) devel_apt-cacher-ng: not-affected (0.7.26-2)