Mandriva Linux Security Advisory : owncloud (MDVSA-2013:206)

high Nessus Plugin ID 69220

Synopsis

The remote Mandriva Linux host is missing a security update.

Description

Updated owncloud package fixes security vulnerabilities :

XSS vulnerability in Share Interface (oC-SA-2013-029).

Authentication bypass in user_webdavauth (oC-SA-2013-030).

This update provides OwnCloud 5.0.9, which fixes these issues, as well as several other bugs.

Solution

Update the affected owncloud package.

See Also

http://advisories.mageia.org/MGASA-2013-0220.html

Plugin Details

Severity: High

ID: 69220

File Name: mandriva_MDVSA-2013-206.nasl

Version: 1.5

Type: local

Published: 8/6/2013

Updated: 1/6/2021

Supported Sensors: Nessus

Vulnerability Information

CPE: p-cpe:/a:mandriva:linux:owncloud, cpe:/o:mandriva:business_server:1

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/Mandrake/release, Host/Mandrake/rpm-list

Patch Publication Date: 8/5/2013

Reference Information

MDVSA: 2013:206