Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gc4q-mf7x-jrrp

Опубликовано: 03 мая 2022
Источник: github
Github: Не прошло ревью

Описание

zgrep in gzip before 1.3.5 does not properly sanitize arguments, which allows local users to execute arbitrary commands via filenames that are injected into a sed script.

zgrep in gzip before 1.3.5 does not properly sanitize arguments, which allows local users to execute arbitrary commands via filenames that are injected into a sed script.

EPSS

Процентиль: 42%
0.00529
Низкий

Связанные уязвимости

ubuntu
около 21 года назад

zgrep in gzip before 1.3.5 does not properly sanitize arguments, which allows local users to execute arbitrary commands via filenames that are injected into a sed script.

redhat
больше 21 года назад

zgrep in gzip before 1.3.5 does not properly sanitize arguments, which allows local users to execute arbitrary commands via filenames that are injected into a sed script.

nvd
около 21 года назад

zgrep in gzip before 1.3.5 does not properly sanitize arguments, which allows local users to execute arbitrary commands via filenames that are injected into a sed script.

debian
около 21 года назад

zgrep in gzip before 1.3.5 does not properly sanitize arguments, which ...

EPSS

Процентиль: 42%
0.00529
Низкий