Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2009-0068

Опубликовано: 07 янв. 2009
Источник: ubuntu
Приоритет: low
CVSS2: 6.8

Описание

Interaction error in xdg-open allows remote attackers to execute arbitrary code by sending a file with a dangerous MIME type but using a safe type that Firefox sends to xdg-open, which causes xdg-open to process the dangerous file type through automatic type detection, as demonstrated by overwriting the .desktop file.

РелизСтатусПримечание
dapper

DNE

devel

ignored

gutsy

ignored

end of life, was needed
hardy

ignored

intrepid

ignored

jaunty

ignored

karmic

ignored

upstream

needed

Показывать по

Ссылки на источники

6.8 Medium

CVSS2

Связанные уязвимости

nvd
около 17 лет назад

Interaction error in xdg-open allows remote attackers to execute arbitrary code by sending a file with a dangerous MIME type but using a safe type that Firefox sends to xdg-open, which causes xdg-open to process the dangerous file type through automatic type detection, as demonstrated by overwriting the .desktop file.

debian
около 17 лет назад

Interaction error in xdg-open allows remote attackers to execute arbit ...

github
почти 4 года назад

Interaction error in xdg-open allows remote attackers to execute arbitrary code by sending a file with a dangerous MIME type but using a safe type that Firefox sends to xdg-open, which causes xdg-open to process the dangerous file type through automatic type detection, as demonstrated by overwriting the .desktop file.

6.8 Medium

CVSS2