*** This bug is a security vulnerability ***

You have been subscribed to a public security bug by Jamie Strandboge 
(jdstrand):

Binary package hint: mahara

Mahara has an embedded copy of phpmailer which is vulnerable to this:

CVE-2007-3215[1]:
> PHPMailer 1.7, when configured to use sendmail, allows remote attackers to
> execute arbitrary shell commands via shell metacharacters in the
> SendmailSend function in class.phpmailer.php.

** Affects: mahara (Ubuntu)
     Importance: Undecided
         Status: New

** Affects: debian
     Importance: Unknown
         Status: Unknown

-- 
CVE-2007-3215: remote shell command execution in class.phpmailer.php
https://bugs.launchpad.net/bugs/293003
You received this bug notification because you are a member of Ubuntu Bugs, 
which is a direct subscriber.

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to