MGASA-2013-0221

Source
https://advisories.mageia.org/MGASA-2013-0221.html
Import Source
https://advisories.mageia.org/MGASA-2013-0221.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2013-0221
Related
Published
2013-07-21T08:57:46Z
Modified
2013-07-21T08:57:41Z
Summary
Updated mediawiki packages fix security vulnerability
Details

MediaWiki user Marco discovered that security checks for file uploads were not being run when the file was uploaded in chunks through the API. This option has been available to users who can upload files since MediaWiki 1.19 (CVE-2013-2114).

References
Credits

Affected packages

Mageia:3 / mediawiki

Package

Name
mediawiki
Purl
pkg:rpm/mageia/mediawiki?arch=source&distro=mageia-3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.20.6-1.2.mga3

Ecosystem specific

{
    "section": "core"
}