Ubuntu Security Notice 5121-2 - USN-5009-1 fixed vulnerabilities in Mailman. This update provides the corresponding updates for Ubuntu 20.04 LTS. It was discovered that Mailman allows arbitrary content injection. An attacker could use this to inject malicious content. It was discovered that Mailman improperly sanitize the MIME content. An attacker could obtain sensitive information by sending a special type of attachment.
3e1981a243b75d6cb9eb3b871c11554d027734dba3c108e22426fdec3c295c82
Red Hat Security Advisory 2020-4667-01 - Mailman is a program used to help manage e-mail discussion lists. Issues addressed include a cross site scripting vulnerability.
77fd5e5c6a2a62b058d485688074e5b957851a5ac94d8639541d6571d113e75d
Ubuntu Security Notice 4348-1 - It was discovered that Mailman incorrectly handled certain inputs. An attacker could possibly use this to issue execute arbitrary scripts or HTML. It was discovered that Mailman incorrectly handled certain inputs. An attacker could possibly use this issue to display arbitrary text on a web page. It was discovered that Mailman incorrectly handled certain files. An attacker could possibly use this issue to execute arbitrary code. Various other issues were also addressed.
0182a08a46b822207d21d5388a61d1d799ca704a08b40c2ce1915ca7ddf53cd6
Debian Linux Security Advisory 4664-1 - Hanno Boeck discovered that it was possible to create a cross site scripting attack on the webarchives of the Mailman mailing list manager, by sending a special type of attachement.
09c0d89623aeba3e355963e4fb44ac1c91f262fe630252861bbd87472c6980d2