Oval Definition:oval:org.mitre.oval:def:7916
Revision Date:2014-06-23Version:18
Title:DSA-1761 moodle -- missing input sanitisation
Description:Christian J. Eibl discovered that the TeX filter of Moodle, a web-based course management system, doesn't check user input for certain TeX commands which allows an attacker to include and display the content of arbitrary system files. Note that this doesn't affect installations that only use the mimetex environment.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2009-1171
DSA-1761
Platform(s):Debian GNU/Linux 4.0
Debian GNU/Linux 5.0
Product(s):moodle
Definition Synopsis
  • Release section
  • Debian GNU/Linux 5.0 is installed
  • AND Installed architecture is all
  • AND moodle is earlier than 1.8.2.dfsg-3+lenny2
  • OR Release section
  • Debian GNU/Linux 4.0 is installed.
  • AND Installed architecture is all
  • AND moodle is earlier than 1.6.3-2+etch3
  • BACK