CVE-2005-3123

Publication date 30 October 2005

Last updated 17 July 2025


Ubuntu priority

Description

Directory traversal vulnerability in GNUMP3D before 2.9.6 allows remote attackers to read arbitrary files via crafted sequences such as "/.//..//////././", which is collapsed into "/.././" after ".." and "//" sequences are removed.

Status

Package Ubuntu Release Status
gnump3d 7.04 feisty
Fixed 2.9.8-2
6.10 edgy
Fixed 2.9.8-2
6.06 LTS dapper
Fixed 2.9.8-2


Access our resources on patching vulnerabilities