[DONE] wml://{security/2005/dsa-899.wml}
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
- --- english/security/2005/dsa-899.wml 2017-11-01 10:11:09.499790492 +0500
+++ russian/security/2005/dsa-899.wml 2018-02-23 12:33:55.628733587 +0500
@@ -1,49 +1,50 @@
- -<define-tag description>programming errors</define-tag>
+#use wml::debian::translation-check translation="1.5" maintainer="Lev Lamberov"
+<define-tag description>оÑ?ибки пÑ?огÑ?аммиÑ?ованиÑ?</define-tag>
<define-tag moreinfo>
- -<p>Several vulnerabilities have been discovered in egroupware, a
- -web-based groupware suite. The Common Vulnerabilities and Exposures
- -project identifies the following problems:</p>
+<p>Ð? egroupware, набоÑ?е веб-пÑ?иложений длÑ? Ñ?овмеÑ?Ñ?ной Ñ?абоÑ?Ñ?, бÑ?ло
+обнаÑ?Ñ?жено неÑ?колÑ?ко Ñ?Ñ?звимоÑ?Ñ?ей. Ð?Ñ?оекÑ? Common Vulnerabilities and Exposures
+опÑ?еделÑ?еÑ? Ñ?ледÑ?Ñ?Ñ?ие пÑ?облемÑ?:</p>
<ul>
<li><a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0870">CVE-2005-0870</a>
- - <p>Maksymilian Arciemowicz discovered several cross site scripting
- - problems in phpsysinfo, which are also present in the imported
- - version in egroupware and of which not all were fixed in
+ <p>Ð?акÑ?имилиан Ð?Ñ?Ñ?имовиÑ? обнаÑ?Ñ?жил неÑ?колÑ?ко Ñ?лÑ?Ñ?аев межÑ?айÑ?ового
+ Ñ?кÑ?ипÑ?инга в phpsysinfo, коÑ?оÑ?Ñ?е Ñ?акже Ñ?одеÑ?жаÑ?Ñ?Ñ? в Ñ?оÑ?Ñ?аве иÑ?полÑ?зÑ?емой
+ в egroupware веÑ?Ñ?ии, и из коÑ?оÑ?Ñ?Ñ? не вÑ?е бÑ?ли иÑ?пÑ?авленÑ? в
DSA <a href="dsa-724">724</a>.</p></li>
<li><a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2600">CVE-2005-2600</a>
- - <p>Alexander Heidenreich discovered a cross-site scripting problem in
- - the tree view of FUD Forum Bulletin Board Software, which is also
- - present in egroupware and allows remote attackers to read private
- - posts via a modified mid parameter.</p></li>
+ <p>Ð?лекÑ?андÑ? ХайденÑ?айÑ? обнаÑ?Ñ?жил межÑ?айÑ?овÑ?й Ñ?кÑ?ипÑ?инг в
+ дÑ?евовидном менÑ? FUD Forum Bulletin Board Software, коÑ?оÑ?Ñ?й Ñ?акже Ñ?одеÑ?жиÑ?Ñ?Ñ?
+ в egroupware и позволÑ?еÑ? Ñ?далÑ?ннÑ?м злоÑ?мÑ?Ñ?ленникам Ñ?иÑ?аÑ?Ñ? закÑ?Ñ?Ñ?Ñ?е
+ Ñ?ообÑ?ениÑ? Ñ? помоÑ?Ñ?Ñ? изменÑ?нного паÑ?амеÑ?Ñ?а mid.</p></li>
<li><a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3347">CVE-2005-3347</a>
- - <p>Christopher Kunz discovered that local variables get overwritten
- - unconditionally in phpsysinfo, which are also present in
- - egroupware, and are trusted later, which could lead to the
- - inclusion of arbitrary files.</p></li>
+ <p>Ð?Ñ?иÑ?Ñ?оÑ?еÑ? Ð?Ñ?нÑ? обнаÑ?Ñ?жил, Ñ?Ñ?о в phpsysinfo вÑ?полнÑ?еÑ?Ñ?Ñ? пеÑ?езапиÑ?Ñ? локалÑ?нÑ?Ñ?
+ пеÑ?еменнÑ?Ñ?, Ñ?Ñ?о Ñ?акже пÑ?иÑ?Ñ?Ñ?Ñ?Ñ?вÑ?еÑ? в egroupware, в далÑ?нейÑ?ем пеÑ?еменнÑ?е
+ не Ñ?еÑ?Ñ?Ñ?Ñ? довеÑ?иÑ?, Ñ?Ñ?о можеÑ? пÑ?иводиÑ?Ñ? к вклÑ?Ñ?ениÑ? пÑ?оизволÑ?нÑ?Ñ?
+ Ñ?айлов.</p></li>
<li><a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3348">CVE-2005-3348</a>
- - <p>Christopher Kunz discovered that user-supplied input is used
- - unsanitised in phpsysinfo and imported in egroupware, causing a
- - HTTP Response splitting problem.</p></li>
+ <p>Ð?Ñ?иÑ?Ñ?оÑ?еÑ? Ð?Ñ?нÑ? обнаÑ?Ñ?жил, Ñ?Ñ?о пеÑ?еданнÑ?е полÑ?зоваÑ?елем даннÑ?е иÑ?полÑ?зÑ?Ñ?Ñ?Ñ?Ñ?
+ в неоÑ?иÑ?енном виде в phpsysinfo и импоÑ?Ñ?иÑ?Ñ?Ñ?Ñ?Ñ?Ñ? в egroupware, Ñ?Ñ?о пÑ?иводиÑ?
+ к Ñ?азделениÑ? HTTP-оÑ?веÑ?а.</p></li>
</ul>
- -<p>The old stable distribution (woody) does not contain egroupware packages.</p>
+<p>Ð? пÑ?едÑ?дÑ?Ñ?ем Ñ?Ñ?абилÑ?ном вÑ?пÑ?Ñ?ке (woody) пакеÑ?Ñ? egroupware оÑ?Ñ?Ñ?Ñ?Ñ?Ñ?вÑ?Ñ?Ñ?.</p>
- -<p>For the stable distribution (sarge) this problem has been fixed in
- -version 1.0.0.007-2.dfsg-2sarge4.</p>
+<p>Ð? Ñ?Ñ?абилÑ?ном вÑ?пÑ?Ñ?ке (sarge) Ñ?Ñ?а пÑ?облема бÑ?ла иÑ?пÑ?авлена в
+вÑ?еÑ?ии 1.0.0.007-2.dfsg-2sarge4.</p>
- -<p>For the unstable distribution (sid) this problem has been fixed in
- -version 1.0.0.009.dfsg-3-3.</p>
+<p>Ð? неÑ?Ñ?абилÑ?ном вÑ?пÑ?Ñ?ке (sid) Ñ?Ñ?а пÑ?облема бÑ?ла иÑ?пÑ?авлена в
+веÑ?Ñ?ии 1.0.0.009.dfsg-3-3.</p>
- -<p>We recommend that you upgrade your egroupware packages.</p>
+<p>РекомендÑ?еÑ?Ñ?Ñ? обновиÑ?Ñ? пакеÑ?Ñ? egroupware.</p>
</define-tag>
# do not modify the following line
-----BEGIN PGP SIGNATURE-----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=3fkD
-----END PGP SIGNATURE-----
Reply to: