USN-4022-1: Gunicorn vulnerability
USN-4022-1: Gunicorn vulnerability Gunicorn vulnerability A security issue affects these releases of Ubuntu and its derivatives: Ubuntu 16.04 LTS Summary Gunicorn could allow cross-site scripting (XSS) attacks. Software Description gunicorn – Python HTTP/WSGI server Details It was discovered that gunicorn improperly handled certain input. An attacker could potentially use this issue execute a cross-site scripting (XSS) attack. Update instructions The problem can be corrected by updating your system to the following package versions: Ubuntu 16.04 LTS gunicorn – 19.4.5-1ubuntu1.1 gunicorn3 – 19.4.5-1ubuntu1.1 python-gunicorn – 19.4.5-1ubuntu1.1 python3-gunicorn – 19.4.5-1ubuntu1.1 To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades. In general, a standard system update will make all the necessary changes. References CVE-2018-1000164 Source: USN-4022-1: Gunicorn vulnerability