K 10 svn:author V 6 ohauer K 8 svn:date V 27 2013-08-05T21:56:56.891587Z K 7 svn:log V 888 - secuity update for typo3 ports - some small Makefile cleanups - add vuxml entry Vulnerability Types: Cross-Site Scripting, Remote Code Execution Overall Severity: Critical Vulnerable subcomponent: Third Party Libraries used for audio and video playback Affected Versions: All versions from 4.5.0 up to the development branch of 6.2 Vulnerability Type: Cross-Site Scripting Severity: Medium Vulnerable subcomponent: Backend File Upload / File Abstraction Layer Vulnerability Type: Remote Code Execution by arbitrary file creation Affected Versions: All versions from 6.0.0 up to the development branch of 6.2 Severity: Critical PR: ports/180951 ports/180952 ports/180953 Submitted by: Helmut Ritter (maintainer) Security: http://typo3.org/teams/security/security-bulletins/typo3-core/typo3-core-sa-2013-002/ CVE-2011-3642 CVE-2013-1464 END