CVE-2011-1403

Publication date 13 May 2011

Last updated 24 July 2024


Ubuntu priority

Description

Cross-site request forgery (CSRF) vulnerability in the pieforms implementation in Mahara before 1.3.6 allows remote attackers to hijack the authentication of arbitrary users for requests to any form, related to inappropriate regeneration of session keys.

Status

Package Ubuntu Release Status
mahara 11.04 natty
Fixed 1.2.7-1ubuntu0.1
10.10 maverick
Fixed 1.2.5-2ubuntu0.2
10.04 LTS lucid
Fixed 1.2.4-1ubuntu0.3
8.04 LTS hardy Not in release
6.06 LTS dapper Not in release


Access our resources on patching vulnerabilities