Alerts This Week
Warning Icon 1 560
Alerts This Week
Warning Icon 1 560

Debian DSA-4468-1: php-horde-form Moderate Path Traversal Threat

debian
Calendar Grey June 21, 2019
Debian Logo
Debian Security Notice DSA-4469-1 points out an issue with php-horde-util that permits a directory traversal vulnerability potentially allowing remote code execution.
A path traversal vulnerability due to an unsanitized POST parameter was discovered in php-horde-form, a package providing form rendering, validation, and other functionality for th...

Summary

For the stable distribution (stretch), this problem has been fixed in
version 2.0.15-1+deb9u1.

We recommend that you upgrade your php-horde-form packages.

For the detailed security status of php-horde-form please refer to its
security tracker page at:
https://security-tracker.debian.org/tracker/source-package/php-horde-form

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Package: php-horde-form
CVE ID: CVE-2019-9858

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here