[Bug 513493] [NEW] Information Leakage and Privilege Escalation.

a7x ubuntu-a7x at scientician.org
Wed Jan 27 22:09:26 UTC 2010


*** This bug is a security vulnerability ***

Public security bug reported:

Binary package hint: dokuwiki

DokuWiki upstream has fixed a vulnerability present in the
dokuwiki-0.0.20090214b-2 package:

http://bugs.splitbrain.org/index.php?do=details&task_id=1847

The vulnerability was fixed in version 2009-12-25b, and the fix was
backported to 2009-02-14b by Debian (into dokuwiki-0.0.20090214b-3.1,
which is available in Lucid).

According to <http://www.splitbrain.org/blog/2010-01/17-dokuwiki-
security>, exploit code has been seen in the wild.

** Affects: dokuwiki (Ubuntu)
     Importance: Undecided
         Status: New

** Visibility changed to: Public

** Description changed:

  Binary package hint: dokuwiki
  
  DokuWiki upstream has fixed a vulnerability present in the
  dokuwiki-0.0.20090214b-2 package:
  
  http://bugs.splitbrain.org/index.php?do=details&task_id=1847
+ http://www.splitbrain.org/blog/2010-01/17-dokuwiki-security
  
  The vulnerability was fixed in version 2009-12-25b, and the fix was
  backported to 2009-02-14b by Debian (into dokuwiki-0.0.20090214b-3.1,
  which is available in Lucid).

** Description changed:

  Binary package hint: dokuwiki
  
  DokuWiki upstream has fixed a vulnerability present in the
  dokuwiki-0.0.20090214b-2 package:
  
  http://bugs.splitbrain.org/index.php?do=details&task_id=1847
- http://www.splitbrain.org/blog/2010-01/17-dokuwiki-security
  
  The vulnerability was fixed in version 2009-12-25b, and the fix was
  backported to 2009-02-14b by Debian (into dokuwiki-0.0.20090214b-3.1,
  which is available in Lucid).
+ 
+ According to <http://www.splitbrain.org/blog/2010-01/17-dokuwiki-
+ security>, exploit code has been seen in the wild.

-- 
Information Leakage and Privilege Escalation.
https://bugs.launchpad.net/bugs/513493
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs at lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs




More information about the universe-bugs mailing list