Candidate: CVE-2011-3129 PublicDate: 2011-08-10 21:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-3129 http://wordpress.org/news/2011/05/wordpress-3-1-3/ Description: The file upload functionality in WordPress 3.1 before 3.1.3 and 3.2 before Beta 2, when running "on hosts with dangerous security settings," has unknown impact and attack vectors, possibly related to dangerous filenames. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_wordpress: upstream_wordpress: released (3.1.3) hardy_wordpress: ignored (reached end-of-life) lucid_wordpress: ignored (reached end-of-life) maverick_wordpress: ignored (reached end-of-life) natty_wordpress: ignored (reached end-of-life) oneiric_wordpress: ignored (reached end-of-life) precise_wordpress: not-affected (3.3.1+dfsg-1) quantal_wordpress: not-affected (3.3.2+dfsg-1) raring_wordpress: not-affected (3.3.2+dfsg-1) saucy_wordpress: not-affected (3.3.2+dfsg-1) devel_wordpress: not-affected (3.3.2+dfsg-1)