CVE-2010-3294

Publication date 24 September 2010

Last updated 24 July 2024


Ubuntu priority

Negligible

Why this priority?

Description

Cross-site scripting (XSS) vulnerability in apc.php in the Alternative PHP Cache (APC) extension before 3.1.4 for PHP allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Read the notes from the security team

Status

Package Ubuntu Release Status
php-apc 10.04 LTS lucid Ignored
9.10 karmic Ignored
9.04 jaunty Ignored
8.04 LTS hardy Not in release
6.06 LTS dapper Not in release

Notes


jdstrand

per Debian, vulnerable script is, mainly, for debugging purposes and is distributed gzip-compressed


Access our resources on patching vulnerabilities