Bug#430691: hiki: [security] vulnerability that arbitrary files would be deleted

2007-06-27 Thread Martin Schulze
Steve Kemp wrote: > > Hiki 0.8.0 - 0.8.6 is affected, it means that stable, testing and unstable > > pacakges in Debian are affected. Please update hiki package. > > > > For more detail, see http://hikiwiki.org/en/advisory20070624.html > > Joey if you could allocate an ID I'll upload a fixed

Bug#430691: hiki: [security] vulnerability that arbitrary files would be deleted

2007-06-26 Thread Steve Kemp
> Hiki 0.8.0 - 0.8.6 is affected, it means that stable, testing and unstable > pacakges in Debian are affected. Please update hiki package. > > For more detail, see http://hikiwiki.org/en/advisory20070624.html Joey if you could allocate an ID I'll upload a fixed package. Steve -- -- To

Bug#430691: hiki: [security] vulnerability that arbitrary files would be deleted

2007-06-26 Thread Hideki Yamane (Debian-JP)
Package: hiki Severity: critical Tags: security Justification: causes serious data loss -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Dear hiki maintainer, Kazuhiro Nishiyama found a vulnerability in hiki that remote attacker can delete arbitrary files by Hiki user's privilege, probably www-d