Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Mercurial 'patch.py' Directory Traversal Vulnerability

Mercurial is prone to a directory-traversal vulnerability because it fails to adequately sanitize user-supplied input.

Attackers can exploit this issue to create or overwrite arbitrary files on a computer hosting the affected application.

Mercurial 1.0.1 is vulnerable; other versions may also be affected.







 

Privacy Statement
Copyright 2009, SecurityFocus