CVE-2005-3123

Publication date 30 October 2005

Last updated 17 July 2025


Ubuntu priority

Directory traversal vulnerability in GNUMP3D before 2.9.6 allows remote attackers to read arbitrary files via crafted sequences such as ”/.//..//////././”, which is collapsed into ”/.././” after ”..” and ”//” sequences are removed.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
gnump3d 7.04 feisty
Fixed 2.9.8-2
6.10 edgy
Fixed 2.9.8-2
6.06 LTS dapper
Fixed 2.9.8-2