Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 464
Alerts This Week
Warning Icon 1 464

Gentoo: 200407-09 Normal: MoinMoin Group ACL Bypass Threat

gentoo
Calendar Grey July 11, 2004
Scroller Gentoo
MoinMoin presents a security flaw that could enable unauthorized entry within Gentoo Linux. It is vital to update your system to protect against this vulnerability.
MoinMoin contains a bug allowing a user to bypass group ACLs (Access Control Lists).

Summary

Gentoo Linux Security Advisory GLSA 200407-09 https://security.gentoo.org/ Severity: Normal Title: MoinMoin: Group ACL bypass Date: July 11, 2004 Bugs: #53126 ID: 200407-09

Synopsis ======= MoinMoin contains a bug allowing a user to bypass group ACLs (Access Control Lists).
Background ========= MoinMoin is a Python clone of WikiWiki, based on PikiPiki.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 net-www/moinmoin <= 1.2.1 >= 1.2.2
========== MoinMoin contains a bug in the code handling administrative group ACLs. A user created with the same name as an administrative group gains the privileges of the administrative group.
Impact ===== If an admin...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround