|
|
Mercurial hgweb 'allowpull' Information Disclosure Vulnerability
|
Bugtraq ID:
|
31223
|
|
Class:
|
Design Error
|
|
CVE:
|
CVE-2008-4297
|
|
Remote:
|
Yes
|
|
Local:
|
No
|
|
Published:
|
Aug 13 2008 12:00AM
|
|
Updated:
|
Oct 07 2008 07:48PM
|
|
Credit:
|
This issue was reported by the vendor.
|
|
Vulnerable:
|
S.u.S.E. openSUSE 11.0
rPath rPath Linux 2
Mercurial Mercurial 1.0.1
|
|
|
|
Not Vulnerable:
|
Mercurial Mercurial 1.0.2
|
|

|