~ubuntu-branches/ubuntu/gutsy/horde3/gutsy-security

  • Committer: Bazaar Package Importer
  • Author(s): Emanuele Gentili
  • Date: 2008-03-27 14:03:40 UTC
  • Revision ID: james.westby@ubuntu.com-20080327140340-c9by7b1bgjrnugw6
Tags: 3.1.4-1ubuntu0.1
* SECURITY UPDATE: (LP: #203456)
 + Directory traversal vulnerability in Horde 3.1.6, Groupware before 1.0.5,
   and Groupware Webmail Edition before 1.0.6, when running with certain 
   configurations, allows remote authenticated users to read and execute arbitrary
   files via ".." sequences and a null byte in the theme name.
   Fix directory traversal vulnerability in Registry.php which allows
   an attacker to read and execute arbitrary local files via crafted
   path sequences.
 
* References
 + http://ftp.horde.org/pub/horde/patches/patch-horde-3.1.6-3.1.7.gz
 + http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=2008-1284
 + http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=470640
 + http://www.debian.org/security/2008/dsa-1519
Filename Latest Rev Last Changed Committer Comment Size
..
admin 1 19 years ago Bazaar Package Importer Import upstream version 3.0.4 Diff
config 1 19 years ago Bazaar Package Importer Import upstream version 3.0.4 Diff
debian 2 19 years ago Bazaar Package Importer Added conflict on horde so removing horde do not c Diff
docs 1 19 years ago Bazaar Package Importer Import upstream version 3.0.4 Diff
js 1 19 years ago Bazaar Package Importer Import upstream version 3.0.4 Diff
lib 1 19 years ago Bazaar Package Importer Import upstream version 3.0.4 Diff
locale 1 19 years ago Bazaar Package Importer Import upstream version 3.0.4 Diff
po 1 19 years ago Bazaar Package Importer Import upstream version 3.0.4 Diff
scripts 1 19 years ago Bazaar Package Importer Import upstream version 3.0.4 Diff
services 1 19 years ago Bazaar Package Importer Import upstream version 3.0.4 Diff
templates 1 19 years ago Bazaar Package Importer Import upstream version 3.0.4 Diff
themes 1 19 years ago Bazaar Package Importer Import upstream version 3.0.4 Diff
util 1 19 years ago Bazaar Package Importer Import upstream version 3.0.4 Diff
COPYING 1.1.4 17 years ago Bazaar Package Importer Import upstream version 3.1.4 22.6 KB Diff Download File
index.php 1.1.4 17 years ago Bazaar Package Importer Import upstream version 3.1.4 3.6 KB Diff Download File
login.php 1.1.4 17 years ago Bazaar Package Importer Import upstream version 3.1.4 7 KB Diff Download File
README 1.1.2 18 years ago Bazaar Package Importer Import upstream version 3.1.1 3.4 KB Diff Download File
rpc.php 1.1.4 17 years ago Bazaar Package Importer Import upstream version 3.1.4 3.1 KB Diff Download File
signup.php 1.1.4 17 years ago Bazaar Package Importer Import upstream version 3.1.4 2.4 KB Diff Download File
test.php 10 17 years ago Bazaar Package Importer * New upstream release. * Transition to PHP5 for R 15.8 KB Diff Download File