LWN.net Logo

trac-git: remote file execution

Package(s):trac-git CVE #(s):CVE-2010-0394
Created:February 4, 2010 Updated:February 10, 2010
Description: From the Debian alert:

Stefan Goebel discovered that the Debian version of trac-git, the Git add-on for the Trac issue tracking system, contains a flaw which enables attackers to execute code on the web server running trac-git by sending crafted HTTP queries.

Alerts:
Debian DSA-1990-1 2010-02-03
Debian DSA-1990-2 2010-02-04

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds