Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2005-0758

Опубликовано: 13 мая 2005
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.6

Описание

zgrep in gzip before 1.3.5 does not properly sanitize arguments, which allows local users to execute arbitrary commands via filenames that are injected into a sed script.

РелизСтатусПримечание
dapper

released

1.0.3-0ubuntu2
devel

released

1.0.3-0ubuntu2
edgy

released

1.0.3-0ubuntu2
feisty

released

1.0.3-0ubuntu2
upstream

needs-triage

Показывать по

РелизСтатусПримечание
dapper

released

1.3.5-12ubuntu0.1
devel

released

1.3.5-14ubuntu1
edgy

released

1.3.5-14ubuntu1
feisty

released

1.3.5-14ubuntu1
upstream

needs-triage

Показывать по

EPSS

Процентиль: 36%
0.0015
Низкий

4.6 Medium

CVSS2

Связанные уязвимости

redhat
больше 20 лет назад

zgrep in gzip before 1.3.5 does not properly sanitize arguments, which allows local users to execute arbitrary commands via filenames that are injected into a sed script.

nvd
больше 20 лет назад

zgrep in gzip before 1.3.5 does not properly sanitize arguments, which allows local users to execute arbitrary commands via filenames that are injected into a sed script.

debian
больше 20 лет назад

zgrep in gzip before 1.3.5 does not properly sanitize arguments, which ...

github
больше 3 лет назад

zgrep in gzip before 1.3.5 does not properly sanitize arguments, which allows local users to execute arbitrary commands via filenames that are injected into a sed script.

EPSS

Процентиль: 36%
0.0015
Низкий

4.6 Medium

CVSS2