CVE-2011-2773

Publication date 15 November 2011

Last updated 24 July 2024


Ubuntu priority

Cross-site request forgery (CSRF) vulnerability in Mahara before 1.4.1 allows remote attackers to hijack the authentication of administrators for requests that add a user to an institution.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
mahara 11.10 oneiric
Fixed 1.4.0-1ubuntu0.1
11.04 natty
Fixed 1.2.7-1ubuntu0.2
10.10 maverick
Fixed 1.2.5-2ubuntu0.3
10.04 LTS lucid
Fixed 1.2.4-1ubuntu0.4
8.04 LTS hardy Not in release

Patch details

For informational purposes only. We recommend not to cherry-pick updates. How can I get the fixes?

Package Patch details
mahara