Oval Definition:oval:org.opensuse.security:def:20063458
Revision Date:2015-11-16Version:1
Title:CVE-2006-3458
Description:
Zope 2.7.0 to 2.7.8, 2.8.0 to 2.8.7, and 2.9.0 to 2.9.3 (Zope2) does not disable the "raw" command when providing untrusted users with restructured text (reStructuredText) functionality from docutils, which allows local users to read arbitrary files.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2006-3458
Platform(s):SLES SDK 9 for IBM iSeries and IBM pSeries
SLES SDK 9 for IBM S/390 and IBM zSeries
SLES SDK 9 for IBM zSeries
SLES SDK 9 for IPF
SLES SDK 9 for x86
SLES SDK 9 for X86-64
SUSE LINUX 10.0
SUSE LINUX 10.1
SUSE LINUX 9.2
SUSE LINUX 9.3
Product(s):
Definition Synopsis
  • Release Information
  • sles9-sdk is installed
  • AND zope less than 2.7.7-0.9
  • OR Package Information
  • suse100 is installed
  • AND zope less than 2.7.7-3.4
  • OR
  • suse101 is installed
  • AND zope less than 2.7.8-15.5
  • OR
  • suse92 is installed
  • AND zope less than 2.7.2-5.4
  • OR
  • suse93 is installed
  • AND zope less than 2.7.4-5.4
  • BACK