TEMP-0783347-555527

NameTEMP-0783347-555527
Descriptionfiles with invalid or unsafe names could be uploaded
SourceAutomatically generated temporary name. Not for external reference.
Debian Bugs783347

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
wordpress (PTS)buster5.0.15+dfsg1-0+deb10u1fixed
buster (security)5.0.21+dfsg1-0+deb10u1fixed
bullseye (security), bullseye5.7.8+dfsg1-0+deb11u2fixed
bookworm6.1.1+dfsg1-1fixed
trixie6.5+dfsg1-1fixed
sid6.5.2+dfsg1-1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
wordpresssourcesqueeze(not affected)
wordpresssourcewheezy(not affected)
wordpresssourcejessie4.1+dfsg-1+deb8u1
wordpresssource(unstable)4.2+dfsg-1783347

Notes

[wheezy] - wordpress <not-affected> (File upload vulnerability only in WordPress 4.1 and higher)
[squeeze] - wordpress <not-affected> (File upload vulnerability only in WordPress 4.1 and higher)
https://wordpress.org/news/2015/04/wordpress-4-1-2/
https://www.openwall.com/lists/oss-security/2015/04/26/2
To be decided: https://www.openwall.com/lists/oss-security/2015/04/28/7
CVE Request: https://www.openwall.com/lists/oss-security/2015/06/10/11

Search for package or bug name: Reporting problems