[prev in list] [next in list] [prev in thread] [next in thread] 

List:       oss-security
Subject:    [oss-security]  CVE request: MoinMoin information disclosure
From:       Raphael Geissert <geissert () debian ! org>
Date:       2010-01-21 17:49:05
Message-ID: hja42b$ubm$1 () ger ! gmane ! org
[Download RAW message or body]

Hi,

There's not much information about this issue, but there appears to be an 
information disclosure vulnerability in MoinMoin related to the handling of 
sys.argv.

References:
http://secunia.com/advisories/38242/
http://moinmo.in/SecurityFixes
http://hg.moinmo.in/moin/1.9/rev/9d8e7ce3c3a2
http://hg.moinmo.in/moin/1.9/rev/04afdde50094
http://moinmo.in/MoinMoinChat/Logs/moin-dev/2010-01-18 (line 70 and below)

Could a CVE please be assigned? Thanks.

Regards,
-- 
Raphael Geissert - Debian Developer
www.debian.org - get.debian.net


[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic