[Bug 412546] [NEW] Remote users may reset the admin password (?)

Rolf Leggewie launchpad.net at rolf.leggewie.biz
Wed Aug 12 14:15:03 UTC 2009


*** This bug is a security vulnerability ***

Public security bug reported:

Binary package hint: wordpress

I just browsed the Debian BTS today and came across.
http://bugs.debian.org/541102

I don't think vulnerability has been established yet, but I thought I'd
report it here nonetheless to give you a chance to take a look.

According to the information in the original report on
lists.grok.org.uk, all current Ubuntu releases of Wordpress would be
affected.

http://lists.grok.org.uk/pipermail/full-disclosure/2009-August/070137.html
http://core.trac.wordpress.org/changeset/11798

** Affects: wordpress (Ubuntu)
     Importance: Undecided
         Status: New

** Affects: wordpress (Debian)
     Importance: Unknown
         Status: Unknown

** Visibility changed to: Public

** Bug watch added: Debian Bug tracker #541102
   http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=541102

** Also affects: wordpress (Debian) via
   http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=541102
   Importance: Unknown
       Status: Unknown

-- 
Remote users may reset the admin password (?)
https://bugs.launchpad.net/bugs/412546
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs at lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs




More information about the universe-bugs mailing list