CVE Vulnerabilities

CVE-2005-3123

Published: Oct 30, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Directory traversal vulnerability in GNUMP3D before 2.9.6 allows remote attackers to read arbitrary files via crafted sequences such as /.//..//////././, which is collapsed into /.././ after .. and // sequences are removed.

Affected Software

NameVendorStart VersionEnd Version
Gnump3dGnu2.9 (including)2.9 (including)
Gnump3dGnu2.9.1 (including)2.9.1 (including)
Gnump3dGnu2.9.2 (including)2.9.2 (including)
Gnump3dGnu2.9.3 (including)2.9.3 (including)
Gnump3dGnu2.9.4 (including)2.9.4 (including)
Gnump3dGnu2.9.5 (including)2.9.5 (including)
Gnump3dUbuntudapper*
Gnump3dUbuntudevel*
Gnump3dUbuntuedgy*
Gnump3dUbuntufeisty*

References