Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r86c-jfhj-2f8j

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The (1) maketemp and (2) mkstemp builtin functions in GNU m4 before 1.4.11 do not quote their output when a file is created, which might allow context-dependent attackers to trigger a macro expansion, leading to unspecified use of an incorrect filename.

The (1) maketemp and (2) mkstemp builtin functions in GNU m4 before 1.4.11 do not quote their output when a file is created, which might allow context-dependent attackers to trigger a macro expansion, leading to unspecified use of an incorrect filename.

EPSS

Процентиль: 85%
0.02727
Низкий

Связанные уязвимости

ubuntu
больше 17 лет назад

The (1) maketemp and (2) mkstemp builtin functions in GNU m4 before 1.4.11 do not quote their output when a file is created, which might allow context-dependent attackers to trigger a macro expansion, leading to unspecified use of an incorrect filename.

redhat
больше 17 лет назад

The (1) maketemp and (2) mkstemp builtin functions in GNU m4 before 1.4.11 do not quote their output when a file is created, which might allow context-dependent attackers to trigger a macro expansion, leading to unspecified use of an incorrect filename.

nvd
больше 17 лет назад

The (1) maketemp and (2) mkstemp builtin functions in GNU m4 before 1.4.11 do not quote their output when a file is created, which might allow context-dependent attackers to trigger a macro expansion, leading to unspecified use of an incorrect filename.

debian
больше 17 лет назад

The (1) maketemp and (2) mkstemp builtin functions in GNU m4 before 1. ...

EPSS

Процентиль: 85%
0.02727
Низкий