Bug List: (This bug is not in your last search results)   Show last search results      Search page      Enter new bug
Bug#: 127758
Alias:
Product:
Component:
Status: RESOLVED
Resolution: FIXED
Assigned To: Gentoo Security <security@gentoo.org>
Hardware:
OS:
Version:
Priority:
Severity:
Reporter: Matthias Geerdsen <vorlon@gentoo.org>
Add CC:
CC:
Remove selected CCs
URL:
Summary:
Status Whiteboard:
Keywords:
Flags: Requestee:
 
 
  ()

Filename Description Type Creator Created Size Actions
Create a New Attachment (proposed patch, testcase, etc.) View All

Bug 127758 depends on: Show dependency tree
Bug 127758 blocks:

Additional Comments: (this is where you put emerge --info)


Not eligible to see or edit group visibility for this bug.






View Bug Activity   |   Format For Printing   |   XML   |   Clone This Bug


Description:   Opened: 2006-03-27 08:24 0000
http://twiki.org/cgi-bin/view/Codev/SecurityAlertTWiki4RdiffPreviewAccess
"
Security Alert: TWiki Rdiff and Preview Scripts Ignore Access Control Settings
(CVE-2006-1386)
Vulnerable Software Version
    * TWikiRelease04x00x01 -- TWiki-4.0.1.zip
    * TWikiRelease04x00x00 -- TWiki-4.0.0.zip

Attack Vectors
With obscure use of the rdiff and preview scripts it is possible to view access
restricted content.

Impact
An unautorized user can view access restricted areas and gain access to
confidential content in TWiki topics."

hotfix available, updated twiki release coming soon


http://twiki.org/cgi-bin/view/Codev/SecurityAdvisoryDosAttackWithInclude

"Security Alert: TWiki INCLUDE function allows DoS Attack on Itself
(CVE-2006-1387)
Attack Vectors
Editing a wiki page and adding an INCLUDE directive. Typically, prior
authentication is necessary (including anonymous TWikiGuest accounts).
Impact
An attacker is able to bring down a server within a few minutes with a DoS
attack. All memory is consumed, typically requiring a reboot of the server
machine. "

hotfix,workaround available

------- Comment #1 From Renat Lumpau 2006-03-27 09:57:51 0000 -------
-1386 was patched yesterday with -r1, just added a patch for -1387 with -r2.

------- Comment #2 From Stefan Cornelius (RETIRED) 2006-03-27 10:02:17 0000 -------
nice, seems like we are done then.

Bug List: (This bug is not in your last search results)   Show last search results      Search page      Enter new bug