diff options
author | Byron Jones <glob@mozilla.com> | 2011-08-04 22:33:28 +0200 |
---|---|---|
committer | Frédéric Buclin <LpSolit@gmail.com> | 2011-08-04 22:33:28 +0200 |
commit | 818ad5e10408f6b513ac276f575bceb082401142 (patch) | |
tree | 450f4742368ac5ff584821185d0ddbbd323d4dc8 /template/en/default/global | |
parent | 10e5c4a1c297d0c7a22f866b9941ac71f70d0dd6 (diff) | |
download | bugzilla-818ad5e10408f6b513ac276f575bceb082401142.tar.gz bugzilla-818ad5e10408f6b513ac276f575bceb082401142.tar.xz |
Bug 637981: (CVE-2011-2379) [SECURITY] "Raw Unified" patch diffs can cause XSS on this domain in IE 6-8 and Safari
r/a=LpSolit
Diffstat (limited to 'template/en/default/global')
-rw-r--r-- | template/en/default/global/user-error.html.tmpl | 5 |
1 files changed, 5 insertions, 0 deletions
diff --git a/template/en/default/global/user-error.html.tmpl b/template/en/default/global/user-error.html.tmpl index 3e1b8748e..af2fc7b36 100644 --- a/template/en/default/global/user-error.html.tmpl +++ b/template/en/default/global/user-error.html.tmpl @@ -109,6 +109,11 @@ [% terms.Bug %] aliases cannot be longer than 20 characters. Please choose a shorter alias. + [% ELSIF error == "attachment_bug_id_mismatch" %] + [% title = "Invalid Attachments" %] + You tried to perform an action on attachments from different [% terms.bugs %]. + This operation requires all attachments to be from the same [% terms.bug %]. + [% ELSIF error == "auth_cant_create_account" %] [% title = "Can't create accounts" %] This site is using an authentication scheme which does not permit |