|Category:||Debian Local Security Checks|
|Title:||Debian Security Advisory DSA 1152-1 (trac)|
|Summary:||Debian Security Advisory DSA 1152-1 (trac)|
The remote host is missing an update to trac
announced via advisory DSA 1152-1.
Felix Wiemann discovered that trac, an enhanced Wiki and issue
tracking system for software development projects, can be used to
disclose arbitrary local files. To fix this problem, python-docutils
needs to be updated as well.
For the stable distribution (sarge) this problem has been fixed in
version 0.8.1-3sarge5 of trac and version 0.3.7-2sarge1 of
For the unstable distribution (sid) this problem has been fixed in
We recommend that you upgrade your trac and python-docutils packages.
Common Vulnerability Exposure (CVE) ID: CVE-2006-3695|
BugTraq ID: 18323
Debian Security Information: DSA-1152 (Google Search)
XForce ISS Database: trac-restructuredtext-dos(27708)
XForce ISS Database: trac-restructuredtext-obtain-information(27706)
|Copyright||Copyright (c) 2006 E-Soft Inc. http://www.securityspace.com|
|This is only one of 50192 vulnerability tests in our test suite. Find out more about running a complete security audit.|
To run a free test of this vulnerability against your system, register below.