CVE-2005-1921

NameCVE-2005-1921
SourceCVE (at NVD; RH)
DescriptionEval injection vulnerability in PEAR XML_RPC 1.3.0 and earlier (aka XML-RPC or xmlrpc) and PHPXMLRPC (aka XML-RPC For PHP or php-xmlrpc) 1.1 and earlier, as used in products such as (1) WordPress, (2) Serendipity, (3) Drupal, (4) egroupware, (5) MailWatch, (6) TikiWiki, (7) phpWebSite, (8) Ampache, and others, allows remote attackers to execute arbitrary PHP code via an XML file, which is not properly sanitized before being used in an eval statement.
ReferencesDSA-745-1, DSA-746-1, DSA-747-1, DSA-789-1, DTSA-15-1
NVD severityhigh (attack range: remote)
Debian Bugs316362, 316447, 316714, 317263
Debian/oldstablenot vulnerable.
Debian/stablenot vulnerable.
Debian/testingnot vulnerable.
Debian/unstablenot vulnerable.

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
egroupware (PTS)etch-backports1.4.004-2.dfsg-4.1~bpo40+1fixed
lenny, lenny (security)1.4.004-2.dfsg-4.2fixed
lenny-backports1.6.002+dfsg-1~bpo50+1fixed
horde3 (PTS)etch, etch (security)3.1.3-4etch7fixed
lenny, lenny (security)3.2.2+debian0-2+lenny2fixed
squeeze, sid3.3.8+debian0-1fixed
php4 (PTS)etch, etch (security)6:4.4.4-8+etch6fixed
phpgroupware (PTS)etch0.9.16.011-2.2fixed
lenny, lenny (security)1:0.9.16.012+dfsg-8+lenny2fixed
phpwiki (PTS)etch, etch (security)1.3.12p3-5etch1fixed
lenny1.3.14-3fixed
squeeze, sid1.3.14-5fixed
serendipity (PTS)etch, etch (security)1.0.4-1+etch1fixed
lenny1.3.1-1fixed
squeeze, sid1.5.3-2fixed

The information above is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
drupalsource(unstable)4.5.4-1high316362
drupalsourcesarge4.5.3-3highDSA-745-1
egroupwaresource(unstable)1.0.0.007-3.dfsg-1high317263
egroupwaresourcesarge1.0.0.007-2.dfsg-2sarge1highDSA-747-1
horde3source(unstable)(not affected)
php4source(unstable)4:4.3.10-16high316447
php4sourceetch4:4.3.10-16etch1highDTSA-15-1
php4sourcesarge4:4.3.10-16highDSA-789-1
php4sourcewoody4:4.1.2-7.woody5highDSA-789-1
phpgroupwaresource(unstable)0.9.16.006-1high
phpgroupwaresourcesarge0.9.16.005-3.sarge0highDSA-746-1
phpgroupwaresourcewoody(unfixed)highDSA-746-1
phpwikisource(unstable)1.3.7-4high316714
serendipitysource(unstable)1.0-1high

Notes

- horde3 <not-affected> (horde3 ships different XMLRPC code)

Search for package or bug name: Reporting problems

Home - Testing Security Team - Debian Security - Imprint