Ausführen beliebiger Kommandos in php-horde-Horde-Form
ID: | FEDORA-2019-8fe9d427f1 |
Distribution: | Fedora |
Plattformen: | Fedora 29 |
Datum: | Mi, 16. Januar 2019, 07:58 |
Referenzen: | Keine Angabe |
Applikationen: | Horde Application Framework |
Originalnachricht |
|
-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2019-8fe9d427f1 2019-01-16 02:19:07.361867 -------------------------------------------------------------------------------- Name : php-horde-Horde-Form Product : Fedora 29 Version : 2.0.19 Release : 1.fc29 URL : http://pear.horde.org Summary : Horde Form API Description : The Horde_Form package provides form rendering, validation, and other functionality for the Horde Application Framework. -------------------------------------------------------------------------------- Update Information: **Horde_Form 2.0.19** * [mjr] SECURITY: Prevent RCE vulnerability due to potential directory traversal in Image uploads (An independent security researcher has reported this vulnerability to SecuriTeam Secure Disclosure program). -------------------------------------------------------------------------------- ChangeLog: * Mon Jan 7 2019 Remi Collet |