[prev in list] [next in list] [prev in thread] [next in thread]
List: kde-commits
Subject: www/info
From: Dirk Mueller <mueller () kde ! org>
Date: 2005-07-18 13:16:22
Message-ID: 1121692582.611855.12363.nullmailer () svn ! kde ! org
[Download RAW message or body]
SVN commit 435860 by mueller:
add kate advisory
M +10 -0 3.2.1.php
M +10 -0 3.2.2.php
M +9 -0 3.2.3.php
M +9 -0 3.2.php
M +9 -0 3.3.1.php
M +9 -0 3.3.2.php
M +10 -0 3.3.php
M +10 -0 3.4.php
A security/advisory-20050718-1.txt
M +1 -0 security/index.php
--- trunk/www/info/3.2.1.php #435859:435860
@@ -122,6 +122,16 @@
<br>Read the <a href="security/advisory-20050316-3.txt">detailed advisory</a>.
All versions of KDE up to and including KDE 3.3.2 are affected.
</li>
+<li>
+The Kate KPart (used by the applications kate and kwrite, possibly others)
+generates a backup file with default permissions upon saving. Depending
+on the setup, this could cause file content leak to local and remote
+(due to network transparency) users.
+<br>Read the <a href="security/advisory-20050718-3.txt">detailed advisory</a>.
+KDE 3.2.x up to including KDE 3.4.0 are affected.
+</li>
+
+
</ul>
<h2><a name="bugs">Bugs</a></h2>
--- trunk/www/info/3.2.2.php #435859:435860
@@ -122,6 +122,16 @@
<br>Read the <a href="security/advisory-20050316-3.txt">detailed advisory</a>.
All versions of KDE up to and including KDE 3.3.2 are affected.
</li>
+<li>
+The Kate KPart (used by the applications kate and kwrite, possibly others)
+generates a backup file with default permissions upon saving. Depending
+on the setup, this could cause file content leak to local and remote
+(due to network transparency) users.
+<br>Read the <a href="security/advisory-20050718-3.txt">detailed advisory</a>.
+KDE 3.2.x up to including KDE 3.4.0 are affected.
+</li>
+
+
</ul>
<h2><a name="bugs">Bugs</a></h2>
--- trunk/www/info/3.2.3.php #435859:435860
@@ -116,8 +116,17 @@
<br>Read the <a href="security/advisory-20050316-3.txt">detailed advisory</a>.
All versions of KDE up to and including KDE 3.3.2 are affected.
</li>
+<li>
+The Kate KPart (used by the applications kate and kwrite, possibly others)
+generates a backup file with default permissions upon saving. Depending
+on the setup, this could cause file content leak to local and remote
+(due to network transparency) users.
+<br>Read the <a href="security/advisory-20050718-3.txt">detailed advisory</a>.
+KDE 3.2.x up to including KDE 3.4.0 are affected.
+</li>
+
</ul>
<h2><a name="bugs">Bugs</a></h2>
--- trunk/www/info/3.2.php #435859:435860
@@ -122,6 +122,15 @@
<br>Read the <a href="security/advisory-20050316-3.txt">detailed advisory</a>.
All versions of KDE up to and including KDE 3.3.2 are affected.
</li>
+<li>
+The Kate KPart (used by the applications kate and kwrite, possibly others)
+generates a backup file with default permissions upon saving. Depending
+on the setup, this could cause file content leak to local and remote
+(due to network transparency) users.
+<br>Read the <a href="security/advisory-20050718-3.txt">detailed advisory</a>.
+KDE 3.2.x up to including KDE 3.4.0 are affected.
+</li>
+
</ul>
<h2><a name="bugs">Bugs</a></h2>
--- trunk/www/info/3.3.1.php #435859:435860
@@ -109,8 +109,17 @@
<br>Read the <a href="security/advisory-20050421-1.txt">detailed advisory</a>.
All versions of KDE up to and including KDE 3.4.0 are affected.
</li>
+<li>
+The Kate KPart (used by the applications kate and kwrite, possibly others)
+generates a backup file with default permissions upon saving. Depending
+on the setup, this could cause file content leak to local and remote
+(due to network transparency) users.
+<br>Read the <a href="security/advisory-20050718-3.txt">detailed advisory</a>.
+KDE 3.2.x up to including KDE 3.4.0 are affected.
+</li>
+
</ul>
<h2><a name="bugs">Bugs</a></h2>
--- trunk/www/info/3.3.2.php #435859:435860
@@ -89,8 +89,17 @@
<br>Read the <a href="security/advisory-20050421-1.txt">detailed advisory</a>.
All versions of KDE up to and including KDE 3.4.0 are affected.
</li>
+<li>
+The Kate KPart (used by the applications kate and kwrite, possibly others)
+generates a backup file with default permissions upon saving. Depending
+on the setup, this could cause file content leak to local and remote
+(due to network transparency) users.
+<br>Read the <a href="security/advisory-20050718-3.txt">detailed advisory</a>.
+KDE 3.2.x up to including KDE 3.4.0 are affected.
+</li>
+
</ul>
<h2><a name="bugs">Bugs</a></h2>
--- trunk/www/info/3.3.php #435859:435860
@@ -106,7 +106,17 @@
<br>Read the <a href="security/advisory-20050421-1.txt">detailed advisory</a>.
All versions of KDE up to and including KDE 3.4.0 are affected.
</li>
+<li>
+The Kate KPart (used by the applications kate and kwrite, possibly others)
+generates a backup file with default permissions upon saving. Depending
+on the setup, this could cause file content leak to local and remote
+(due to network transparency) users.
+<br>Read the <a href="security/advisory-20050718-3.txt">detailed advisory</a>.
+KDE 3.2.x up to including KDE 3.4.0 are affected.
+</li>
+
+
</ul>
<h2><a name="bugs">Bugs</a></h2>
--- trunk/www/info/3.4.php #435859:435860
@@ -33,6 +33,16 @@
<br>Read the <a href="security/advisory-20050421-1.txt">detailed advisory</a>.
All versions of KDE up to and including KDE 3.4.0 are affected.
</li>
+<li>
+The Kate KPart (used by the applications kate and kwrite, possibly others)
+generates a backup file with default permissions upon saving. Depending
+on the setup, this could cause file content leak to local and remote
+(due to network transparency) users.
+<br>Read the <a href="security/advisory-20050718-3.txt">detailed advisory</a>.
+KDE 3.2.x up to including KDE 3.4.0 are affected.
+</li>
+
+
</ul>
--- trunk/www/info/security/index.php #435859:435860
@@ -21,6 +21,7 @@
has its own security page</a>.</p>
<ul>
+ <li><a href="./advisory-20050718-1.txt">2005-07-18 Kate backup file permission leak</a></li>
<li><a href="./advisory-20050504-1.txt">2005-05-04 Patch updates for kimgio and Kommander</a></li>
<li><a href="./advisory-20050421-1.txt">2005-04-21 kimgio input validation errors</a></li>
<li><a href="./advisory-20050420-1.txt">2005-04-20 Kommander untrusted code execution</a></li>
[prev in list] [next in list] [prev in thread] [next in thread]
Configure |
About |
News |
Add a list |
Sponsored by KoreLogic