CVE-2009-2944
ikiwiki - information disclosure
EPSS 1.8%
描述
Incomplete blacklist vulnerability in the teximg plugin in ikiwiki before 3.1415926 and 2.x before 2.53.4 allows context-dependent attackers to read arbitrary files via crafted TeX commands.
如何修補 CVE-2009-2944
要修補 CVE-2009-2944,請將受影響套件升級到下列已修補版本。
- Debian/ikiwiki—升級至 3.1415926 或更新版本
- Debian/ikiwiki—升級至 2.53.4 或更新版本
CVE-2009-2944 正在被利用嗎?
低 — EPSS 為 1.8%,目前沒有觀察到大規模利用活動。
受影響套件(2)
- from 0, < 3.1415926
- from 0, < 2.53.4