MGASA-2015-0205

Source
https://advisories.mageia.org/MGASA-2015-0205.html
Import Source
https://advisories.mageia.org/MGASA-2015-0205.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2015-0205
Upstream
  • CVE-2015-2775
Published
2015-05-11T20:10:38Z
Modified
2026-04-16T06:23:25.160946088Z
Summary
Updated mailman packages fix security vulnerabilities
Details

Updated mailman packages fix security vulnerability:

A path traversal vulnerability was discovered in Mailman. Installations using a transport script (such as postfix-to-mailman.py) to interface with their MTA instead of static aliases were vulnerable to a path traversal attack. To successfully exploit this, an attacker needs write access on the local file system (CVE-2015-2775).

References
Credits

Affected packages

Mageia:4 / mailman

Package

Name
mailman
Purl
pkg:rpm/mageia/mailman?arch=source&distro=mageia-4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.1.20-1.1.mga4

Ecosystem specific

{
    "section": "core"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2015-0205.json"