CVE Vulnerabilities

CVE-2006-1166

Published: Mar 12, 2006 | Modified: Jul 20, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
3.7 LOW
AV:L/AC:H/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Monotone 0.25 and earlier, when a user creates a file in a directory called mt, and when checking out that file on a case-insensitive file system such as Windows or Mac OS X, places the file into the MT bookkeeping directory, which could allow context-dependent attackers to execute arbitrary Lua programs as the user running monotone.

Affected Software

Name Vendor Start Version End Version
Monotone Monotone 0.25 (including) 0.25 (including)

References