Bug#438494: Security bug in gforge-plugin-scmcvs

2007-08-17 Thread Roland Mas
Moritz Muehlenhoff, 2007-05-21 14:26:38 +0200 : Roland Mas wrote: I'd like to upload a fixed package to sid and etch-security (sarge is not affected). I'd welcome feedback on the patch I only had a brief look at it, but I generally recommend to identify a set of allowed and known to be

Bug#438494: Security bug in gforge-plugin-scmcvs

2007-08-17 Thread Moritz Muehlenhoff
Roland Mas wrote: Bernhard R. Link [EMAIL PROTECTED] found a remote shell code injection vulnerability bug in the CVS browsing interface of Gforge, as used on Alioth and packaged in gforge-plugin-scmcvs. A specially crafted URL could execute arbitrary commands as the www-data user, as

Bug#438494: Security bug in gforge-plugin-scmcvs

2007-08-17 Thread Moritz Muehlenhoff
Roland Mas wrote: [Cc:ing bug discoverer and Alioth admins] Bernhard R. Link [EMAIL PROTECTED] found a remote shell code injection vulnerability bug in the CVS browsing interface of Gforge, as used on Alioth and packaged in gforge-plugin-scmcvs. A specially crafted URL could execute

Bug#438494: Security bug in gforge-plugin-scmcvs

2007-08-17 Thread Moritz Muehlenhoff
Roland Mas wrote: I'd like to upload a fixed package to sid and etch-security (sarge is not affected). I'd welcome feedback on the patch I only had a brief look at it, but I generally recommend to identify a set of allowed and known to be secure characters and only allow these instead of

Bug#438494: Security bug in gforge-plugin-scmcvs

2007-08-17 Thread Stephen Gran
This one time, at band camp, Moritz Muehlenhoff said: Roland Mas wrote: I'd like to upload a fixed package to sid and etch-security (sarge is not affected). I'd welcome feedback on the patch I only had a brief look at it, but I generally recommend to identify a set of allowed and known

Bug#438494: Security bug in gforge-plugin-scmcvs

2007-08-17 Thread Martin Schulze
Moritz Muehlenhoff wrote: Roland Mas wrote: [Cc:ing bug discoverer and Alioth admins] Bernhard R. Link [EMAIL PROTECTED] found a remote shell code injection vulnerability bug in the CVS browsing interface of Gforge, as used on Alioth and packaged in gforge-plugin-scmcvs. A specially

Bug#438494: Security bug in gforge-plugin-scmcvs

2007-08-17 Thread Bernhard R. Link
* Roland Mas [EMAIL PROTECTED] [070521 17:04]: I only had a brief look at it, but I generally recommend to identify a set of allowed and known to be secure characters and only allow these instead of filtering potential malicious characters. So, if the value to be sanitised is a file name