MGASA-2019-0351 - Updated httpie packages fix security vulnerability

Publication date: 30 Nov 2019
URL: https://advisories.mageia.org/MGASA-2019-0351.html
Type: security
Affected Mageia releases: 7
CVE: CVE-2019-10751

Updated httpie packages fix security vulnerability:

HTTPie is vulnerable to Open Redirect that allows an attacker to write
an arbitrary file with supplied filename and content to the current
directory, by redirecting a request from HTTP to a crafted URL pointing
to a server in his or her control (CVE-2019-10751).

References:
- https://bugs.mageia.org/show_bug.cgi?id=25764
- - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-10751

SRPMS:
- 7/core/httpie-1.0.3-1.mga7

Mageia 2019-0351: httpie security update

Updated httpie packages fix security vulnerability: HTTPie is vulnerable to Open Redirect that allows an attacker to write an arbitrary file with supplied filename and content to ...

Summary

Updated httpie packages fix security vulnerability:
HTTPie is vulnerable to Open Redirect that allows an attacker to write an arbitrary file with supplied filename and content to the current directory, by redirecting a request from HTTP to a crafted URL pointing to a server in his or her control (CVE-2019-10751).

References

- https://bugs.mageia.org/show_bug.cgi?id=25764

- - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-10751

Resolution

MGASA-2019-0351 - Updated httpie packages fix security vulnerability

SRPMS

- 7/core/httpie-1.0.3-1.mga7

Severity
Publication date: 30 Nov 2019
URL: https://advisories.mageia.org/MGASA-2019-0351.html
Type: security
CVE: CVE-2019-10751

Related News