CVE-2016-1501

NameCVE-2016-1501
DescriptionownCloud Server before 8.0.9 and 8.1.x before 8.1.4 allow remote authenticated users to obtain sensitive information via unspecified vectors, which reveals the installation path in the resulting exception messages.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
owncloudsourcejessie7.0.4+dfsg-4~deb8u4
owncloudsource(unstable)7.0.12~dfsg-2

Notes

https://owncloud.org/security/advisory/?id=oc-sa-2016-004

Search for package or bug name: Reporting problems