Vulnerability Bulletins

DSA-3227 movabletype-opensource - security update

   
Affected software Debian
 
John Lightsey discovered a format string injection vulnerability in thelocalisation of templates in Movable Type, a blogging system. Anunauthenticated remote attacker could take advantage of this flaw toexecute arbitrary code as the web server user.

More info:

https://www.debian.org/security/2015/dsa-3227