Alerts This Week
Warning Icon 1 619
Alerts This Week
Warning Icon 1 619

Mageia 8 MGASA-2022-0090 Moderate: Webmin File Access Issue

mageia
Calendar Grey March 7, 2022
Dist Mageia Esm H88
Due to a security flaw, Webmin users may gain access to root directories. It's crucial to upgrade packages to fortify defenses for Mageia 8.
Less privileged Webmin users who do not have any File Manager module restrictions configured can access files with root privileges, if using the default Authentic theme (CVE-2022-0...

Summary

Less privileged Webmin users who do not have any File Manager module restrictions configured can access files with root privileges, if using the default Authentic theme (CVE-2022-0824, CVE-2022-0829).

References

- https://bugs.mageia.org/show_bug.cgi?id=30116

- https://webmin.com/security/

- https://webmin.com/tags/webmin-changelog/

- https://www.cve.org/CVERecord?id=CVE-2022-0824

- https://www.cve.org/CVERecord?id=CVE-2022-0829

Resolution

SRPMS

- 8/core/webmin-1.990-1.mga8

Publication date: 07 Mar 2022
URL: https://advisories.mageia.org/MGASA-2022-0090.html
Type: security
CVE: CVE-2022-0824, CVE-2022-0829

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here