<?xml version="1.0" encoding="UTF-8"?>
<!--PATCHINFO id="c682b5327539dc71ac6da407e2a329a6"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="371">
  <id>dbg111-struts</id>
  <title>struts security update</title>
  <release>openSUSE 11.1</release>
  <issued date="1231361533"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=385273" id="385273" title="bug number 385273" type="bugzilla"/>
  </references>
  <description>Insufficient quoting of parameters allowed attackers to
conduct cross site scripting (XSS) attacks (CVE-2008-2025).
</description>
  <pkglist>
    <collection>
        <package name="struts" arch="noarch" version="1.2.9" release="162.163.2">
          <filename>struts-1.2.9-162.163.2.noarch.rpm</filename>
        </package>
        <package name="struts-javadoc" arch="noarch" version="1.2.9" release="162.163.2">
          <filename>struts-javadoc-1.2.9-162.163.2.noarch.rpm</filename>
        </package>
        <package name="struts-manual" arch="noarch" version="1.2.9" release="162.163.2">
          <filename>struts-manual-1.2.9-162.163.2.noarch.rpm</filename>
        </package>
        <package name="struts-webapps-tomcat6" arch="noarch" version="1.2.9" release="162.163.2">
          <filename>struts-webapps-tomcat6-1.2.9-162.163.2.noarch.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
