FreeBSD : mathopd -- directory traversal vulnerability (6e7ad1d7-4e27-11e1-8e12-90e6ba8a36a2)

high Nessus Plugin ID 57818

Synopsis

The remote FreeBSD host is missing a security-related update.

Description

Michiel Boland reports :

The software has a vulnerability that could lead to directory traversal if the '*' construct for mass virtual hosting is used.

Solution

Update the affected package.

See Also

http://www.nessus.org/u?ebcdaa62

http://www.mathopd.org/security.html

http://www.nessus.org/u?73196b9e

Plugin Details

Severity: High

ID: 57818

File Name: freebsd_pkg_6e7ad1d74e2711e18e1290e6ba8a36a2.nasl

Version: 1.7

Type: local

Published: 2/3/2012

Updated: 1/6/2021

Supported Sensors: Nessus

Vulnerability Information

CPE: p-cpe:/a:freebsd:freebsd:mathopd, cpe:/o:freebsd:freebsd

Required KB Items: Host/local_checks_enabled, Host/FreeBSD/release, Host/FreeBSD/pkg_info

Patch Publication Date: 2/3/2012

Vulnerability Publication Date: 2/2/2012