CVE-2011-0725

NameCVE-2011-0725
DescriptionAbsolute path traversal vulnerability in the org.debian.apt.UpdateCachePartially method in worker.py in Aptdaemon 0.40 in Ubuntu 10.10 and 11.04 allows local users to read arbitrary files via a full pathname in the sources_list argument, related to the D-Bus interface.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
aptdaemonsourcesqueeze(not affected)
aptdaemonsource(unstable)0.43+bzr707-1

Notes

[squeeze] - aptdaemon <not-affected> (Introduced in 0.33)

Search for package or bug name: Reporting problems