PublicDate: 2007-12-01 06:46:00 UTC Candidate: CVE-2007-5742 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5742 Description: Directory traversal vulnerability in the WML engine preprocessor for Wesnoth 1.2.x before 1.2.8, and 1.3.x before 1.3.12, allows remote attackers to read arbitrary files via ".." sequences in unknown vectors. Ubuntu-Description: Notes: Bugs: https://bugs.launchpad.net/ubuntu/gutsy/+source/wesnoth/+bug/173881 Priority: medium Discovered-by: Assigned-to: shermann CVSS: upstream_wesnoth: released (1.2.8) dapper_wesnoth: released (1.1+reverted+to+1.0.2-0ubuntu1.2) edgy_wesnoth: released (1.1.8-1ubuntu0.2) feisty_wesnoth: released (1.2.3-0ubuntu1.1) gutsy_wesnoth: released (1.2.6-1ubuntu2.2) devel_wesnoth: not-affected