[Bug 206510] CVE-2006-2658: xsp directory traversal vulnerability

bugzilla at redhat.com bugzilla at redhat.com
Thu Sep 14 20:42:47 UTC 2006


Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug report.

Summary: CVE-2006-2658: xsp directory traversal vulnerability


https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=206510


paul at all-the-johnsons.co.uk changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
             Status|NEW                         |ASSIGNED




------- Additional Comments From paul at all-the-johnsons.co.uk  2006-09-14 16:42 EST -------
I've looked at this report and by the looks of it, yes the FE xsp/mod_mono will
come under the same umberella (built from the same sources). I've asked on the
mono-developers list if there is a patch available and if there is, I shall
apply it quickly.

Could you please advise what to do in the meantime? Should I put an advisory out
on the FE list alerting people to the issue?

-- 
Configure bugmail: https://bugzilla.redhat.com/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug, or are watching someone who is.




More information about the Fedora-security-list mailing list