The fix for ikiwiki for CVE-2016-10026 was incomplete resulting in editing restriction bypass for git revert when using git versions older than 2.8.0. This has been fixed in 3.20161229.
References
Link | Resource |
---|---|
https://ikiwiki.info/security/#cve-2016-9645 | Vendor Advisory |
https://marc.info/?l=oss-security&m=148304341511854&w=2 | Third Party Advisory |
https://security-tracker.debian.org/tracker/CVE-2016-9645 | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: debian
Published: 2016-12-28T00:00:00
Updated: 2018-04-10T21:57:01
Reserved: 2016-11-29T00:00:00
Link: CVE-2016-9645
JSON object: View
NVD Information
Status : Analyzed
Published: 2018-04-10T22:29:00.243
Modified: 2018-05-22T15:57:34.430
Link: CVE-2016-9645
JSON object: View
Redhat Information
No data.
CWE