Package: dokuwiki
Version: 0.0.20060309-5
Severity: grave
Tags: security
Justification: user security hole

Hi,

upstream's 20060309_d_ release fixes four security issues, one of
them, http://bugs.splitbrain.org/index.php?do=details&id=906, allowing
attackers to place any code on the server where the webserver has
write access.

http://bugs.splitbrain.org/index.php?do=details&id=823
http://bugs.splitbrain.org/index.php?do=details&id=820
http://bugs.splitbrain.org/index.php?do=details&id=825
http://bugs.splitbrain.org/index.php?do=details&id=906

Please package and upload the new version asap.

Greetings
Marc

-- System Information:
Debian Release: testing/unstable
  APT prefers unstable
  APT policy: (500, 'unstable'), (500, 'stable')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.17.13-zgsrv
Locale: LANG=C, LC_CTYPE=de_DE (charmap=ISO-8859-1)


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to