aboutsummaryrefslogtreecommitdiffstats
path: root/polish/security/2004/dsa-490.wml
blob: 5d40498b6bf91fda8f50f6d7e47e8f5d8e5fcb65 (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
#use wml::debian::translation-check translation="1.1" maintainer=""
#pddp arteek
<define-tag description>arbitrary code execution</define-tag>
<define-tag moreinfo>
<p>A vulnerability has been discovered in the index support of the
ZCatalog plug-in in Zope, an open source web application server.  A
flaw in the security settings of ZCatalog allows anonymous users to
call arbitrary methods of catalog indexes.  The vulnerability also
allows untrusted code to do the same.</p>

<p>For the stable distribution (woody) this problem has been fixed in
version 2.5.1-1woody1.</p>

<p>For the unstable distribution (sid) this problem has been fixed in
version 2.6.0-0.1 and higher.</p>

<p>We recommend that you upgrade your zope package.</p>
</define-tag>

# do not modify the following line
#include "$(ENGLISHDIR)/security/2004/dsa-490.data"

© 2014-2024 Faster IT GmbH | imprint | privacy policy