Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug report.
Summary: CVE-2006-2658: xsp directory traversal vulnerability
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=206510
------- Additional Comments From tibbs(a)math.uh.edu 2006-09-14 16:47 EST -------
I wouldn't go so far as to send an advisory. This is currently classified as a
low-risk vulnerability so I'd suggest simply patching it ASAP.
You may be able to extract the fix from the SUSE package if you can find it.
--
Configure bugmail:
https://bugzilla.redhat.com/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug, or are watching someone who is.