[Bug 41284] Don't allow a backslash in a path component (CVE-2006-1863)

Gary Coady gary at lyranthe.org
Tue Apr 25 12:19:15 UTC 2006


Public bug reported:

Affects: linux-source-2.6.15 (Ubuntu)
       Severity: Normal
       Priority: (none set)
         Status: Unconfirmed


Description:
http://www.kernel.org/git/?p=linux/kernel/git/stable/linux-2.6.16.y.git;a=commit;h=5c521ce6afd3509df37117d78c711d18dd5c0a70

[PATCH] Don't allow a backslash in a path component (CVE-2006-1863)

Unless Posix paths have been negotiated, the backslash, "\", is not a valid
character in a path component.

Signed-off-by: Dave Kleikamp <shaggy at austin.ibm.com>
Signed-off-by: Steve French <sfrench at us.ibm.com>
Signed-off-by: Greg Kroah-Hartman <gregkh at suse.de>

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2006-1863

-- 
Don't allow a backslash in a path component (CVE-2006-1863)
https://launchpad.net/bugs/41284




More information about the kernel-bugs mailing list