MGASA-2015-0314
Dashboard / Vulnerabilities / MGASA-2015-0314
MGASA-2015-0314
Summary: Updated owncloud package fixes security vulnerabilities
Details: In ownCloud before 6.0.8 and 8.0.4, a bug in the SDK used to connect ownCloud against the Dropbox server might allow the owner of "Dropbox.com" to gain access to any files on the ownCloud server if an external Dropbox storage was mounted (CVE-2015-4715). In ownCloud before 6.0.8 and 8.0.4, the sanitization component for filenames was vulnerable to DoS when parsing specially crafted file names passed via specific endpoints. Effectively this lead to a endless loop filling the log file until the system is not anymore responsive (CVE-2015-4717). In ownCloud before 6.0.8 and 8.0.4, the external SMB storage of ownCloud was not properly neutralizing all special elements which allows an adversary to execute arbitrary SMB commands. This was caused by improperly sanitizing the ";" character which is interpreted as command separator by smbclient (the used software to connect to SMB shared by ownCloud). Effectively this allows an attacker to gain access to any file on the system or overwrite it, finally leading to a PHP code execution in the case of ownCloud's config file (CVE-2015-4718).
References: https://advisories.mageia.org/MGASA-2015-0314.html, https://bugs.mageia.org/show_bug.cgi?id=16491, https://owncloud.org/security/advisory/?id=oc-sa-2015-005, https://owncloud.org/security/advisory/?id=oc-sa-2015-007, https://owncloud.org/security/advisory/?id=oc-sa-2015-008, http://owncloud.org/changelog/
Affected packages
Package
Name: owncloud
Purl: pkg:rpm/mageia/owncloud?arch=source&distro=mageia-4
Affected ranges
Type: ECOSYSTEM
Events:
