{"id":"MGASA-2014-0116","summary":"Updated egroupware package fixes security vulnerability","details":"eGroupware prior to 1.8.006.20140217 is vulnerable to remote file\ndeletion and possible remote code execution due to user input being\npassed to PHP's unserialize() method (CVE-2014-2027).\n","modified":"2026-04-16T06:22:30.880624133Z","published":"2014-03-03T20:01:25Z","upstream":["CVE-2014-2027"],"references":[{"type":"ADVISORY","url":"https://advisories.mageia.org/MGASA-2014-0116.html"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=12820"},{"type":"WEB","url":"http://www.egroupware.org/changelog"},{"type":"WEB","url":"http://openwall.com/lists/oss-security/2014/02/19/4"}],"affected":[{"package":{"name":"egroupware","ecosystem":"Mageia:3","purl":"pkg:rpm/mageia/egroupware?arch=source&distro=mageia-3"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.8.006.20140217-1.mga3"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2014-0116.json"}},{"package":{"name":"egroupware","ecosystem":"Mageia:4","purl":"pkg:rpm/mageia/egroupware?arch=source&distro=mageia-4"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.8.006.20140217-1.mga4"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2014-0116.json"}}],"schema_version":"1.7.5","credits":[{"name":"Mageia","contact":["https://wiki.mageia.org/en/Packages_Security_Team"],"type":"COORDINATOR"}]}