Описание
Multiple CRLF injection vulnerabilities in (1) chfn and (2) chsh in shadow 1:4.1.4 allow local users to add new users or groups to /etc/passwd via the GECOS field.
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | not-affected | |
| devel | released | 1:4.1.4.2+svn3283-2ubuntu3 |
| hardy | not-affected | |
| karmic | released | 1:4.1.4.1-1ubuntu2.2 |
| lucid | released | 1:4.1.4.2-1ubuntu2.2 |
| maverick | released | 1:4.1.4.2-1ubuntu3.2 |
| upstream | released | 4.1.4.3 |
Показывать по
6.4 Medium
CVSS2
Связанные уязвимости
Multiple CRLF injection vulnerabilities in (1) chfn and (2) chsh in shadow 1:4.1.4 allow local users to add new users or groups to /etc/passwd via the GECOS field.
Multiple CRLF injection vulnerabilities in (1) chfn and (2) chsh in shadow 1:4.1.4 allow local users to add new users or groups to /etc/passwd via the GECOS field.
Multiple CRLF injection vulnerabilities in (1) chfn and (2) chsh in sh ...
Multiple CRLF injection vulnerabilities in (1) chfn and (2) chsh in shadow 1:4.1.4 allow local users to add new users or groups to /etc/passwd via the GECOS field.
6.4 Medium
CVSS2