CVE-2005-3559

Publication date 16 November 2005

Last updated 24 July 2024


Ubuntu priority

Directory traversal vulnerability in vmail.cgi in Asterisk 1.0.9 through 1.2.0-beta1 allows remote attackers to access WAV files via a .. (dot dot) in the folder parameter.

Status

Package Ubuntu Release Status
asterisk 7.10 gutsy
Fixed 1:1.2.7.1.dfsg-2
7.04 feisty
Fixed 1:1.2.7.1.dfsg-2
6.10 edgy
Fixed 1:1.2.7.1.dfsg-2
6.06 LTS dapper
Fixed 1:1.2.7.1.dfsg-2