Lucene search

K
osvGoogleOSV:DSA-712-1
HistoryApr 19, 2005 - 12:00 a.m.

geneweb - insecure file operations

2005-04-1900:00:00
Google
osv.dev
6

0.001 Low

EPSS

Percentile

44.6%

Tim Dijkstra discovered a problem during the upgrade of geneweb, a
genealogy software with web interface. The maintainer scripts
automatically converted files without checking their permissions and
content, which could lead to the modification of arbitrary files.

For the stable distribution (woody) this problem has been fixed in
version 4.06-2woody1.

For the unstable distribution (sid) this problem has been fixed in
version 4.10-7.

We recommend that you upgrade your geneweb package.

CPENameOperatorVersion
genewebeq4.06-2

0.001 Low

EPSS

Percentile

44.6%