Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2018-13259

Опубликовано: 04 сент. 2018
Источник: redhat
CVSS3: 5.3
EPSS Низкий

Описание

An issue was discovered in zsh before 5.6. Shebang lines exceeding 64 characters were truncated, potentially leading to an execve call to a program name that is a substring of the intended one.

It was discovered that zsh does not properly validate the shebang of input files and it truncates it to the first 64 bytes. A local attacker may use this flaw to make zsh execute a different binary than what is expected, named with a substring of the shebang one.

Отчет

This issue did not affect the versions of zsh as shipped with Red Hat Enterprise Linux 5 as scripts were directly handled by the kernel and not special-handled by zsh itself.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5zshNot affected
Red Hat Enterprise Linux 6zshWill not fix
Red Hat Enterprise Linux 8zshNot affected
Red Hat Enterprise Linux 7zshFixedRHSA-2019:201706.08.2019

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-20
https://bugzilla.redhat.com/show_bug.cgi?id=1626184zsh: Improper handling of shebang line longer than 64

EPSS

Процентиль: 78%
0.01175
Низкий

5.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 7 лет назад

An issue was discovered in zsh before 5.6. Shebang lines exceeding 64 characters were truncated, potentially leading to an execve call to a program name that is a substring of the intended one.

CVSS3: 9.8
nvd
больше 7 лет назад

An issue was discovered in zsh before 5.6. Shebang lines exceeding 64 characters were truncated, potentially leading to an execve call to a program name that is a substring of the intended one.

CVSS3: 9.8
debian
больше 7 лет назад

An issue was discovered in zsh before 5.6. Shebang lines exceeding 64 ...

CVSS3: 9.8
github
больше 3 лет назад

An issue was discovered in zsh before 5.6. Shebang lines exceeding 64 characters were truncated, potentially leading to an execve call to a program name that is a substring of the intended one.

oracle-oval
больше 6 лет назад

ELSA-2019-2017: zsh security and bug fix update (MODERATE)

EPSS

Процентиль: 78%
0.01175
Низкий

5.3 Medium

CVSS3