CVE-2015-2775
Publication date 1 April 2015
Last updated 24 July 2024
Ubuntu priority
Directory traversal vulnerability in GNU Mailman before 2.1.20, when not using a static alias, allows remote attackers to execute arbitrary files via a .. (dot dot) in a list name.
Status
Package | Ubuntu Release | Status |
---|---|---|
mailman | ||
14.04 LTS trusty |
Fixed 1:2.1.16-2ubuntu0.1
|
|
Patch details
Package | Patch details |
---|---|
mailman |
References
Related Ubuntu Security Notices (USN)
- USN-2558-1
- Mailman vulnerability
- 7 April 2015