[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#529318: linux-2.6: CVE-2007-6514 smbfs information disclosure vulnerability



Package: linux-2.6
Severity: important
Tags: security

Hi,

The following CVE (Common Vulnerabilities & Exposures) id was
published for linux-2.6.

CVE-2007-6514[0]:
| Apache HTTP Server, when running on Linux with a document root on a
| Windows share mounted using smbfs, allows remote attackers to obtain
| unprocessed content such as source files for .php programs via a
| trailing "\" (backslash), which is not handled by the intended AddType
| directive.

If you fix the vulnerability please also make sure to include the
CVE id in your changelog entry.

For further information see:

[0] http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-6514
    http://security-tracker.debian.net/tracker/CVE-2007-6514



Reply to: