Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2009-0068

Опубликовано: 07 янв. 2009
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 6.8

Описание

Interaction error in xdg-open allows remote attackers to execute arbitrary code by sending a file with a dangerous MIME type but using a safe type that Firefox sends to xdg-open, which causes xdg-open to process the dangerous file type through automatic type detection, as demonstrated by overwriting the .desktop file.

РелизСтатусПримечание
dapper

DNE

devel

ignored

gutsy

ignored

end of life, was needed
hardy

ignored

intrepid

ignored

jaunty

ignored

karmic

ignored

upstream

needed

Показывать по

Ссылки на источники

EPSS

Процентиль: 80%
0.01379
Низкий

6.8 Medium

CVSS2

Связанные уязвимости

nvd
почти 17 лет назад

Interaction error in xdg-open allows remote attackers to execute arbitrary code by sending a file with a dangerous MIME type but using a safe type that Firefox sends to xdg-open, which causes xdg-open to process the dangerous file type through automatic type detection, as demonstrated by overwriting the .desktop file.

debian
почти 17 лет назад

Interaction error in xdg-open allows remote attackers to execute arbit ...

github
больше 3 лет назад

Interaction error in xdg-open allows remote attackers to execute arbitrary code by sending a file with a dangerous MIME type but using a safe type that Firefox sends to xdg-open, which causes xdg-open to process the dangerous file type through automatic type detection, as demonstrated by overwriting the .desktop file.

EPSS

Процентиль: 80%
0.01379
Низкий

6.8 Medium

CVSS2