VDB
Sign up
HIGH

GHSA-w736-qv86-vq94

TYPO3 Remote File Disclosure vulnerability in the jumpUrl mechanism

Quick fix

GHSA-w736-qv86-vq94 — typo3/cms: upgrade to the fixed version with the command below.

composer require typo3/cms:^4.2.15

Details

The jumpUrl (aka access tracking) implementation in `tslib/class.tslib_fe.php` in TYPO3 4.2.x before 4.2.15, 4.3.x before 4.3.7, and 4.4.x before 4.4.4 does not properly compare certain hash values during access-control decisions, which allows remote attackers to read arbitrary files via unspecified vectors.

Are you affected?

Enter the version of the package you're using.

Affected packages

Packagist/typo3/cms
Introduced in: 4.2.0Fixed in: 4.2.15
Fixcomposer require typo3/cms:^4.2.15
Packagist/typo3/cms
Introduced in: 4.3.0Fixed in: 4.3.7
Fixcomposer require typo3/cms:^4.3.7
Packagist/typo3/cms
Introduced in: 4.4.0Fixed in: 4.4.4
Fixcomposer require typo3/cms:^4.4.4

References