Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 523
Alerts This Week
Warning Icon 1 523

Gentoo: GLSA-200408-25 Normal: MoinMoin Group ACL Bypass

gentoo
Calendar Grey August 26, 2004
Scroller Gentoo
MoinMoin vulnerability permits unauthorized users to circumvent security measures, creating potential risks. Users are recommended to update immediately.
MoinMoin contains a bug allowing anonymous users to bypass ACLs (Access Control Lists) and carry out operations that should be limited to authorized users

Summary

Gentoo Linux Security Advisory GLSA 200408-25 https://security.gentoo.org/ Severity: Normal Title: MoinMoin: Group ACL bypass Date: August 26, 2004 Bugs: #57913 ID: 200408-25

Synopsis ======= MoinMoin contains a bug allowing anonymous users to bypass ACLs (Access Control Lists) and carry out operations that should be limited to authorized users.
Background ========= MoinMoin is a Python clone of WikiWiki, based on PikiPiki.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 net-www/moinmoin <= 1.2.2 >= 1.2.3
========== MoinMoin contains two unspecified bugs, one allowing anonymous userselevated access when not using ACLs, and the other in the ACL hand...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround