Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2005-0638

Опубликовано: 02 мар. 2005
Источник: ubuntu
Приоритет: medium
CVSS2: 7.5

Описание

xloadimage before 4.1-r2, and xli before 1.17, allows attackers to execute arbitrary commands via shell metacharacters in filenames for compressed images, which are not properly quoted when calling the gunzip command.

РелизСтатусПримечание
dapper

released

1.17.0-21
devel

released

1.17.0-21
edgy

released

1.17.0-21
feisty

released

1.17.0-21
upstream

needs-triage

Показывать по

РелизСтатусПримечание
dapper

released

4.1-16
devel

released

4.1-16
edgy

released

4.1-16
feisty

released

4.1-16
upstream

needs-triage

Показывать по

Ссылки на источники

7.5 High

CVSS2

Связанные уязвимости

redhat
почти 21 год назад

xloadimage before 4.1-r2, and xli before 1.17, allows attackers to execute arbitrary commands via shell metacharacters in filenames for compressed images, which are not properly quoted when calling the gunzip command.

nvd
почти 21 год назад

xloadimage before 4.1-r2, and xli before 1.17, allows attackers to execute arbitrary commands via shell metacharacters in filenames for compressed images, which are not properly quoted when calling the gunzip command.

debian
почти 21 год назад

xloadimage before 4.1-r2, and xli before 1.17, allows attackers to exe ...

github
почти 4 года назад

xloadimage before 4.1-r2, and xli before 1.17, allows attackers to execute arbitrary commands via shell metacharacters in filenames for compressed images, which are not properly quoted when calling the gunzip command.

fstec
почти 25 лет назад

Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

7.5 High

CVSS2