zope -- restructuredText "csv_table" Information Disclosure

View: New views
2 Messages — Rating Filter:   Alert me  

zope -- restructuredText "csv_table" Information Disclosure

by TAOKA Fumiyoshi :: Rate this Message:

Reply to Author | View Threaded | Show Only this Message

zope -- restructuredText "csv_table" Information Disclosure
http://www.vuxml.org/freebsd/65a8f773-4a37-11db-a4cc-000a48049292.html

It is said that affected packages are zope >= 0 in the VuXML entry.
While referenced pages in the entry say that they are:
    Zope 2.7.0 - 2.7.9
    Zope 2.8.0 - 2.8.8

http://www.securityfocus.com/bid/20022
http://www.vuxml.org/freebsd/CVE-2006-4684.html
http://secunia.com/advisories/21947/
http://www.zope.org/Products/Zope/Hotfix-2006-08-21/Hotfix-20060821/ 
README.txt


I hope this is useful.
--
TAOKA Fumiyoshi

_______________________________________________
freebsd-vuxml@... mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-vuxml
To unsubscribe, send any mail to "freebsd-vuxml-unsubscribe@..."

Re: zope -- restructuredText "csv_table" Information Disclosure

by infofarmer :: Rate this Message:

Reply to Author | View Threaded | Show Only this Message

On 10/19/06, TAOKA Fumiyoshi <fmysh@...> wrote:

> zope -- restructuredText "csv_table" Information Disclosure
> http://www.vuxml.org/freebsd/65a8f773-4a37-11db-a4cc-000a48049292.html
>
> It is said that affected packages are zope >= 0 in the VuXML entry.
> While referenced pages in the entry say that they are:
>     Zope 2.7.0 - 2.7.9
>     Zope 2.8.0 - 2.8.8
>
> http://www.securityfocus.com/bid/20022
> http://www.vuxml.org/freebsd/CVE-2006-4684.html
> http://secunia.com/advisories/21947/
> http://www.zope.org/Products/Zope/Hotfix-2006-08-21/Hotfix-20060821/
> README.txt

The vulnerability has been confirmed in these versions,
but as far as we know there are no versions confirmed
to be safe yet. To be on the safe side we never put an
upper limit on version numbers until we know it for
sure.

Thanks!
_______________________________________________
freebsd-vuxml@... mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-vuxml
To unsubscribe, send any mail to "freebsd-vuxml-unsubscribe@..."
LightInTheBox - Buy quality products at wholesale price!