Bugs in Jetty - CVE-2009-1523

1 message Options
Embed this post
Permalink
Michael Seibold

Bugs in Jetty - CVE-2009-1523

Reply Threaded More More options
Print post
Permalink
Hi Folks,

FYI: Bug in Jetty

"Directory traversal vulnerability in the HTTP server in Mort Bay Jetty 5.1.14, 6.x before 6.1.17, and 7.x through 7.0.0.M2 allows remote attackers to access arbitrary files via directory traversal sequences in the URI. "

 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-1523 


Maybe something for the next scheduled minor release...

Cheers

-Michael


------------------------------------------------------------------------------
Come build with us! The BlackBerry(R) Developer Conference in SF, CA
is the only developer event you need to attend this year. Jumpstart your
developing skills, take BlackBerry mobile applications to market and stay
ahead of the curve. Join us from November 9 - 12, 2009. Register now!
http://p.sf.net/sfu/devconference
_______________________________________________
Please read the OpenNMS Mailing List FAQ:
http://www.opennms.org/index.php/Mailing_List_FAQ

opennms-devel mailing list

To *unsubscribe* or change your subscription options, see the bottom of this page:
https://lists.sourceforge.net/lists/listinfo/opennms-devel