Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2017:2207-1

Опубликовано: 17 авг. 2017
Источник: suse-cvrf

Описание

Security update for shutter

This update for shutter fixes one security issue:

  • CVE-2016-10081: Remote attackers could trick users into assisting them in executing arbitrary commands via a crafted image name that is mishandled during a 'Run a plugin' action (boo#1017571)

Список пакетов

openSUSE Leap 42.2
shutter-0.93.1-5.1
shutter-lang-0.93.1-5.1
openSUSE Leap 42.3
shutter-0.93.1-5.1
shutter-lang-0.93.1-5.1

Описание

/usr/bin/shutter in Shutter through 0.93.1 allows user-assisted remote attackers to execute arbitrary commands via a crafted image name that is mishandled during a "Run a plugin" action.


Затронутые продукты
openSUSE Leap 42.2:shutter-0.93.1-5.1
openSUSE Leap 42.2:shutter-lang-0.93.1-5.1
openSUSE Leap 42.3:shutter-0.93.1-5.1
openSUSE Leap 42.3:shutter-lang-0.93.1-5.1

Ссылки