Zope RestructuredText File Include Vulnerability
BID:15082
Info
Zope RestructuredText File Include Vulnerability
| Bugtraq ID: | 15082 |
| Class: | Access Validation Error |
| CVE: |
CVE-2005-3323 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 12 2005 12:00AM |
| Updated: | Mar 19 2015 09:21AM |
| Credit: | The vendor disclosed this vulnerability. |
| Vulnerable: |
Zope Zope 2.8.1 Zope Zope 2.7 .0 BETA4 Zope Zope 2.7 .0 BETA3 Zope Zope 2.7 .0 BETA2 Zope Zope 2.7 .0 BETA1 Zope Zope 2.6.3 Zope Zope 2.6.2 Zope Zope 2.6.1 Zope Zope 2.6 .0b1 Zope Zope 2.5.1 b1 Zope Zope 2.5.1 Zope Zope 2.5 .0 Zope Zope 2.4.4 b1 Zope Zope 2.4.3 Zope Zope 2.4.2 Zope Zope 2.4.1 Zope Zope 2.4 .0 Zope Zope 2.3.3 Zope Zope 2.3.2 Zope Zope 2.3.1 Zope Zope 2.3 .0 Zope Zope 2.2.5 Zope Zope 2.2.4 Zope Zope 2.2.3 Zope Zope 2.2.2 Zope Zope 2.2.1 Zope Zope 2.2 .0 Zope Zope 2.2 beta1 Zope Zope 2.2 Zope Zope 2.1.7 Zope Zope 2.1.1 Ubuntu Ubuntu Linux 5.10 powerpc Ubuntu Ubuntu Linux 5.10 i386 Ubuntu Ubuntu Linux 5.10 amd64 SuSE SUSE Linux Enterprise Server 9 SuSE SUSE Linux Enterprise Server 8 S.u.S.E. SuSE Linux Standard Server 8.0 S.u.S.E. SuSE Linux School Server for i386 S.u.S.E. SUSE LINUX Retail Solution 8.0 S.u.S.E. SuSE Linux Openexchange Server 4.0 S.u.S.E. Open-Enterprise-Server 9.0 S.u.S.E. Novell Linux Desktop 9.0 S.u.S.E. Linux Professional 10.0 OSS S.u.S.E. Linux Professional 10.0 S.u.S.E. Linux Professional 9.3 x86_64 S.u.S.E. Linux Professional 9.3 S.u.S.E. Linux Professional 9.2 x86_64 S.u.S.E. Linux Professional 9.2 S.u.S.E. Linux Professional 9.1 x86_64 S.u.S.E. Linux Professional 9.1 S.u.S.E. Linux Professional 9.0 x86_64 S.u.S.E. Linux Professional 9.0 S.u.S.E. Linux Professional 8.2 S.u.S.E. Linux Personal 10.0 OSS S.u.S.E. Linux Personal 9.3 x86_64 S.u.S.E. Linux Personal 9.3 S.u.S.E. Linux Personal 9.2 x86_64 S.u.S.E. Linux Personal 9.2 S.u.S.E. Linux Personal 9.1 x86_64 S.u.S.E. Linux Personal 9.1 S.u.S.E. Linux Personal 9.0 x86_64 S.u.S.E. Linux Personal 9.0 S.u.S.E. Linux Personal 8.2 S.u.S.E. Linux Openexchange Server S.u.S.E. Linux Desktop 1.0 Gentoo Linux Debian Linux 3.1 sparc Debian Linux 3.1 s/390 Debian Linux 3.1 ppc Debian Linux 3.1 mipsel Debian Linux 3.1 mips Debian Linux 3.1 m68k Debian Linux 3.1 ia-64 Debian Linux 3.1 ia-32 Debian Linux 3.1 hppa Debian Linux 3.1 arm Debian Linux 3.1 amd64 Debian Linux 3.1 alpha Debian Linux 3.1 |
| Not Vulnerable: | |
Discussion
Zope RestructuredText File Include Vulnerability
Zope is prone to a file-include vulnerability in the docutils module because Zope honors file-inclusion directives in RestructuredText objects by default.
An attacker can exploit this vulnerability to include and execute arbitrary Zope code in the security context of the Zope server.
Zope is prone to a file-include vulnerability in the docutils module because Zope honors file-inclusion directives in RestructuredText objects by default.
An attacker can exploit this vulnerability to include and execute arbitrary Zope code in the security context of the Zope server.
Exploit / POC
Zope RestructuredText File Include Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]
Solution / Fix
Zope RestructuredText File Include Vulnerability
Solution:
The vendor has released a patch to resolve this issue; please see the fix information provided with this BID.
Please see the referenced advisories for more information.
Zope Zope 2.6 .0b1
Zope Zope 2.6.1
Zope Zope 2.6.2
Zope Zope 2.6.3
Zope Zope 2.7 .0 BETA4
Zope Zope 2.7 .0 BETA1
Zope Zope 2.7 .0 BETA2
Zope Zope 2.7 .0 BETA3
Zope Zope 2.8.1
Solution:
The vendor has released a patch to resolve this issue; please see the fix information provided with this BID.
Please see the referenced advisories for more information.
Zope Zope 2.6 .0b1
-
Zope Hotfix_2005-10-09.tar.gz
http://www.zope.org/Products/Zope/Hotfix_2005-10-09/security_alert/Hot fix_2005-10-09.tar.gz
Zope Zope 2.6.1
-
Zope Hotfix_2005-10-09.tar.gz
http://www.zope.org/Products/Zope/Hotfix_2005-10-09/security_alert/Hot fix_2005-10-09.tar.gz
Zope Zope 2.6.2
-
Zope Hotfix_2005-10-09.tar.gz
http://www.zope.org/Products/Zope/Hotfix_2005-10-09/security_alert/Hot fix_2005-10-09.tar.gz
Zope Zope 2.6.3
-
Zope Hotfix_2005-10-09.tar.gz
http://www.zope.org/Products/Zope/Hotfix_2005-10-09/security_alert/Hot fix_2005-10-09.tar.gz
Zope Zope 2.7 .0 BETA4
-
Zope Hotfix_2005-10-09.tar.gz
http://www.zope.org/Products/Zope/Hotfix_2005-10-09/security_alert/Hot fix_2005-10-09.tar.gz
Zope Zope 2.7 .0 BETA1
-
Debian zope2.7_2.7.5-2sarge1_alpha.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/z/zope2.7/zope2.7_2.7.5-2 sarge1_alpha.deb -
Debian zope2.7_2.7.5-2sarge1_amd64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/z/zope2.7/zope2.7_2.7.5-2 sarge1_amd64.deb -
Debian zope2.7_2.7.5-2sarge1_arm.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/z/zope2.7/zope2.7_2.7.5-2 sarge1_arm.deb -
Debian zope2.7_2.7.5-2sarge1_hppa.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/z/zope2.7/zope2.7_2.7.5-2 sarge1_hppa.deb -
Debian zope2.7_2.7.5-2sarge1_i386.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/z/zope2.7/zope2.7_2.7.5-2 sarge1_i386.deb -
Debian zope2.7_2.7.5-2sarge1_ia64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/z/zope2.7/zope2.7_2.7.5-2 sarge1_ia64.deb -
Debian zope2.7_2.7.5-2sarge1_m68k.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/z/zope2.7/zope2.7_2.7.5-2 sarge1_m68k.deb -
Debian zope2.7_2.7.5-2sarge1_mips.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/z/zope2.7/zope2.7_2.7.5-2 sarge1_mips.deb -
Debian zope2.7_2.7.5-2sarge1_mipsel.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/z/zope2.7/zope2.7_2.7.5-2 sarge1_mipsel.deb -
Debian zope2.7_2.7.5-2sarge1_powerpc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/z/zope2.7/zope2.7_2.7.5-2 sarge1_powerpc.deb -
Debian zope2.7_2.7.5-2sarge1_s390.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/z/zope2.7/zope2.7_2.7.5-2 sarge1_s390.deb -
Debian zope2.7_2.7.5-2sarge1_sparc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/z/zope2.7/zope2.7_2.7.5-2 sarge1_sparc.deb -
Debian zope2.7_2.7.5-2sarge1_alpha.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/z/zope2.7/zope2.7_2.7.5-2 sarge1_alpha.deb -
Debian zope2.7_2.7.5-2sarge1_amd64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/z/zope2.7/zope2.7_2.7.5-2 sarge1_amd64.deb -
Debian zope2.7_2.7.5-2sarge1_arm.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/z/zope2.7/zope2.7_2.7.5-2 sarge1_arm.deb -
Debian zope2.7_2.7.5-2sarge1_hppa.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/z/zope2.7/zope2.7_2.7.5-2 sarge1_hppa.deb -
Debian zope2.7_2.7.5-2sarge1_i386.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/z/zope2.7/zope2.7_2.7.5-2 sarge1_i386.deb -
Debian zope2.7_2.7.5-2sarge1_ia64.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/z/zope2.7/zope2.7_2.7.5-2 sarge1_ia64.deb -
Debian zope2.7_2.7.5-2sarge1_m68k.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/z/zope2.7/zope2.7_2.7.5-2 sarge1_m68k.deb -
Debian zope2.7_2.7.5-2sarge1_mips.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/z/zope2.7/zope2.7_2.7.5-2 sarge1_mips.deb -
Debian zope2.7_2.7.5-2sarge1_mipsel.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/z/zope2.7/zope2.7_2.7.5-2 sarge1_mipsel.deb -
Debian zope2.7_2.7.5-2sarge1_powerpc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/z/zope2.7/zope2.7_2.7.5-2 sarge1_powerpc.deb -
Debian zope2.7_2.7.5-2sarge1_s390.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/z/zope2.7/zope2.7_2.7.5-2 sarge1_s390.deb -
Debian zope2.7_2.7.5-2sarge1_sparc.deb
Debian GNU/Linux 3.1 alias sarge
http://security.debian.org/pool/updates/main/z/zope2.7/zope2.7_2.7.5-2 sarge1_sparc.deb -
Zope Hotfix_2005-10-09.tar.gz
http://www.zope.org/Products/Zope/Hotfix_2005-10-09/security_alert/Hot fix_2005-10-09.tar.gz
Zope Zope 2.7 .0 BETA2
-
Zope Hotfix_2005-10-09.tar.gz
http://www.zope.org/Products/Zope/Hotfix_2005-10-09/security_alert/Hot fix_2005-10-09.tar.gz
Zope Zope 2.7 .0 BETA3
-
Zope Hotfix_2005-10-09.tar.gz
http://www.zope.org/Products/Zope/Hotfix_2005-10-09/security_alert/Hot fix_2005-10-09.tar.gz
Zope Zope 2.8.1
-
Ubuntu zope2.8-sandbox_2.8.1-5ubuntu0.1_all.deb
Ubuntu 5.10 (Breezy Badger)
http://security.ubuntu.com/ubuntu/pool/main/z/zope2.8/zope2.8-sandbox_ 2.8.1-5ubuntu0.1_all.deb -
Ubuntu zope2.8_2.8.1-5ubuntu0.1_amd64.deb
Ubuntu 5.10 (Breezy Badger)
http://security.ubuntu.com/ubuntu/pool/main/z/zope2.8/zope2.8_2.8.1-5u buntu0.1_amd64.deb -
Ubuntu zope2.8_2.8.1-5ubuntu0.1_i386.deb
Ubuntu 5.10 (Breezy Badger)
http://security.ubuntu.com/ubuntu/pool/main/z/zope2.8/zope2.8_2.8.1-5u buntu0.1_i386.deb -
Ubuntu zope2.8_2.8.1-5ubuntu0.1_powerpc.deb
Ubuntu 5.10 (Breezy Badger)
http://security.ubuntu.com/ubuntu/pool/main/z/zope2.8/zope2.8_2.8.1-5u buntu0.1_powerpc.deb -
Zope Hotfix_2005-10-09.tar.gz
http://www.zope.org/Products/Zope/Hotfix_2005-10-09/security_alert/Hot fix_2005-10-09.tar.gz
References
Zope RestructuredText File Include Vulnerability
References:
References: