USN-658-1: Moodle vulnerability
23 October 2008
Moodle vulnerability
Releases
Packages
- moodle -
Details
Lukasz Pilorz discovered that the HTML filtering used in Moodle was not
strict enough. A remote attacker could send malicious requests to Moodle
and execute arbitrary code as the web server user.
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 8.04
Ubuntu 7.10
In general, a standard system upgrade is sufficient to effect the
necessary changes.