Directory traversal vulnerability in src/http/modules/ngxhttpdavmodule.c in nginx (aka Engine X) before 0.7.63, and 0.8.x before 0.8.17, allows remote authenticated users to create or overwrite arbitrary files via a .. (dot dot) in the Destination HTTP header for the WebDAV (1) COPY or (2) MOVE method.
engine x (nginx) contains a null pointer dereference flaw in versions 0.1.0-0.8.13 before versions 0.8.14, 0.7.62, 0.6.39 and 0.5.38.
http://nginx.net/ http://marc.info/?l=nginx&m=125692080328141&w=2 http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=552035 http://www.debian.org/security/2009/dsa-1920