Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2005-0758

Опубликовано: 13 мая 2005
Источник: debian
EPSS Низкий

Описание

zgrep in gzip before 1.3.5 does not properly sanitize arguments, which allows local users to execute arbitrary commands via filenames that are injected into a sed script.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
gzipfixed1.3.5-10package
bzip2fixed1.0.2-8.1package
bzip2no-dsasargepackage

Примечания

  • see http://bugs.gentoo.org/show_bug.cgi?id=90626

EPSS

Процентиль: 36%
0.0015
Низкий

Связанные уязвимости

ubuntu
больше 20 лет назад

zgrep in gzip before 1.3.5 does not properly sanitize arguments, which allows local users to execute arbitrary commands via filenames that are injected into a sed script.

redhat
больше 20 лет назад

zgrep in gzip before 1.3.5 does not properly sanitize arguments, which allows local users to execute arbitrary commands via filenames that are injected into a sed script.

nvd
больше 20 лет назад

zgrep in gzip before 1.3.5 does not properly sanitize arguments, which allows local users to execute arbitrary commands via filenames that are injected into a sed script.

github
больше 3 лет назад

zgrep in gzip before 1.3.5 does not properly sanitize arguments, which allows local users to execute arbitrary commands via filenames that are injected into a sed script.

EPSS

Процентиль: 36%
0.0015
Низкий