TWiki Search Shell Metacharacter Remote Arbitrary Command Execution Vulnerability

Solution:
Gentoo has released a security advisory (GLSA 200411-33) and an updated eBuild to address this vulnerability. Gentoo users are advised to execute the following sequence of commands as a superuser in order to apply the updates:
emerge --sync
emerge --ask --oneshot --verbose ">=www-apps/twiki-20040902"

Conectiva Linux has mad advisory CLA-2005:918 available dealing with this issue. Please see the referenced advisory for more information.

The vendor has made an update available dealing with this issue.


Conectiva Linux 10.0


 

Privacy Statement
Copyright 2010, SecurityFocus