Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Edgewall Software Trac Unauthorized File Upload/Download Vulnerability

Solution:
The vendor has released an upgrade to address this issue.

Gentoo has released an advisory (GLSA 200506-21) and an updated eBuild to address this issue. Gentoo users are advised to execute the following series of commands as a superuser to apply these updates:

emerge --sync
emerge --ask --oneshot --verbose ">=www-apps/trac-0.8.4"

Debian has released advisory DSA 739-1 to address this issue. Please see the attached advisory for details on obtaining and applying fixes.


Edgewall Software Trac 0.7.1

Edgewall Software Trac 0.8.1

Edgewall Software Trac 0.8.3







 

Privacy Statement
Copyright 2009, SecurityFocus