Public bug reported:

Binary package hint: wml

References:
DSA-1492-1 (http://www.debian.org/security/2008/dsa-1492)

Quoting:
"Frank Lichtenheld and Nico Golde discovered that WML, an off-line HTML
generation toolkit, creates insecure temporary files in the eperl and
ipp backends and in the wmg.cgi script, which could lead to local denial
of service by overwriting files."

** Affects: wml (Ubuntu)
     Importance: Undecided
         Status: New

** Affects: wml (Debian)
     Importance: Unknown
         Status: Unknown

** Visibility changed to: Public

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2008-0665

** Bug watch added: Debian Bug tracker #463907
   http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=463907

** Also affects: wml (Debian) via
   http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=463907
   Importance: Unknown
       Status: Unknown

-- 
[wml] [CVE-2008-0665] [CVE-2008-0666] insecure temporary files
https://bugs.launchpad.net/bugs/191205
You received this bug notification because you are a member of Ubuntu
Bugs, which is the bug contact for Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to