Mercurial hgweb 'allowpull' Information Disclosure Vulnerability
BID:31223
Info
Mercurial hgweb 'allowpull' Information Disclosure Vulnerability
| Bugtraq ID: | 31223 |
| Class: | Design Error |
| CVE: |
CVE-2008-4297 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 13 2008 12:00AM |
| Updated: | Oct 07 2008 07:48PM |
| Credit: | This issue was reported by the vendor. |
| Vulnerable: |
S.u.S.E. openSUSE 11.0 rPath rPath Linux 2 Mercurial Mercurial 1.0.1 |
| Not Vulnerable: |
Mercurial Mercurial 1.0.2 |
Discussion
Mercurial hgweb 'allowpull' Information Disclosure Vulnerability
Mercurial is prone to an information-disclosure vulnerability because it fails to honor specific configuration options.
Attackers can exploit this issue to view files contained in the vulnerable repository.
Mercurial 1.0.1 is vulnerable; other versions may also be affected.
Mercurial is prone to an information-disclosure vulnerability because it fails to honor specific configuration options.
Attackers can exploit this issue to view files contained in the vulnerable repository.
Mercurial 1.0.1 is vulnerable; other versions may also be affected.
Exploit / POC
Mercurial hgweb 'allowpull' Information Disclosure Vulnerability
Attackers may exploit this issue through a web browser.
Attackers may exploit this issue through a web browser.
Solution / Fix
Mercurial hgweb 'allowpull' Information Disclosure Vulnerability
Solution:
The vendor has released fixes. Please see the references for more information.
Solution:
The vendor has released fixes. Please see the references for more information.
References
Mercurial hgweb 'allowpull' Information Disclosure Vulnerability
References:
References:
- Mercurial Changelog - Version 1.0.2 - 2008-08-13 (Mercurial)
- Vendor Homepage (Mercurial)