Candidate: CVE-2009-0753 PublicDate: 2009-03-03 16:30:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0753 Description: Absolute path traversal vulnerability in MLDonkey 2.8.4 through 2.9.7 allows remote attackers to read arbitrary files via a leading "//" (double slash) in the filename. Ubuntu-Description: Notes: Bugs: https://bugs.launchpad.net/ubuntu/+source/mldonkey/+bug/340166 Priority: medium Discovered-by: Assigned-to: CVSS: Patches_mldonkey: other: https://savannah.nongnu.org/bugs/?25667 upstream_mldonkey: needs-triage dapper_mldonkey: not-affected gutsy_mldonkey: needed (reached end-of-life) hardy_mldonkey: released (2.9.2-2ubuntu0.1) intrepid_mldonkey: released (2.9.5-1ubuntu0.1) devel_mldonkey: released (2.9.5-2ubuntu1)