On 11/02/2005-06:32, Martin Schulze wrote:
> Package: gforge
> Version: 3.1-26
> Severity: grave
> Tags: security sarge sid patch
>
> The sid/sarge version seems to be vulnerable to this. Please correct it.
> The correction should be in the GForge CVS, otherwise sanitising the dir
> should be ea
Package: gforge
Version: 3.1-26
Severity: grave
Tags: security sarge sid patch
The sid/sarge version seems to be vulnerable to this. Please correct it.
The correction should be in the GForge CVS, otherwise sanitising the dir
should be easy (i.e. recursively strip "../").
Candidate: CAN-2005-0299
2 matches
Mail list logo