MGASA-2014-0116

Source
https://advisories.mageia.org/MGASA-2014-0116.html
Import Source
https://advisories.mageia.org/MGASA-2014-0116.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2014-0116
Upstream
  • CVE-2014-2027
Published
2014-03-03T20:01:25Z
Modified
2026-04-16T06:22:30.880624133Z
Summary
Updated egroupware package fixes security vulnerability
Details

eGroupware prior to 1.8.006.20140217 is vulnerable to remote file deletion and possible remote code execution due to user input being passed to PHP's unserialize() method (CVE-2014-2027).

References
Credits

Affected packages

Mageia:3 / egroupware

Package

Name
egroupware
Purl
pkg:rpm/mageia/egroupware?arch=source&distro=mageia-3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.8.006.20140217-1.mga3

Ecosystem specific

{
    "section": "core"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2014-0116.json"

Mageia:4 / egroupware

Package

Name
egroupware
Purl
pkg:rpm/mageia/egroupware?arch=source&distro=mageia-4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.8.006.20140217-1.mga4

Ecosystem specific

{
    "section": "core"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2014-0116.json"