Mandriva Linux Security Advisory 2009-291 – Directory traversal vulnerability in the HTTP server in Mort Bay Jetty before 6.1.17, and 7.0.0.M2 and earlier 7.x versions, allows remote attackers to access arbitrary files via directory traversal sequences in the URI. This update fixes this vulnerability.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/82349/MDVSA-2009-291.txt
Source: https://packetstormsecurity.com/files/82349/Mandriva-Linux-Security-Advisory-2009-291.html

