Please do not reply directly to this email. All additional comments should be made in the comments box of this bug report. Summary: CVE-2006-2658: xsp directory traversal vulnerability https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=206510 paul@xxxxxxxxxxxxxxxxxxxxxx changed: What |Removed |Added ---------------------------------------------------------------------------- Status|NEW |ASSIGNED ------- Additional Comments From paul@xxxxxxxxxxxxxxxxxxxxxx 2006-09-14 16:42 EST ------- I've looked at this report and by the looks of it, yes the FE xsp/mod_mono will come under the same umberella (built from the same sources). I've asked on the mono-developers list if there is a patch available and if there is, I shall apply it quickly. Could you please advise what to do in the meantime? Should I put an advisory out on the FE list alerting people to the issue? -- Configure bugmail: https://bugzilla.redhat.com/bugzilla/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug, or are watching someone who is. -- Fedora-security-list mailing list Fedora-security-list@xxxxxxxxxx https://www.redhat.com/mailman/listinfo/fedora-security-list