CVE-2005-3123

Publication date

2005-10-31 01:00:00

Family

debian

State

PUBLISHED

Description

Directory traversal vulnerability in GNUMP3D before 2.9.6 allows remote attackers to read arbitrary files via crafted sequences such as "/.//..//////././", which is collapsed into "/.././" after ".." and "//" sequences are removed.