Описание
lib/sup/message_chunks.rb in Sup before 0.13.2.1 and 0.14.x before 0.14.1.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the content_type of an email attachment.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 0.22.1-1 |
| esm-apps/xenial | not-affected | 0.22.1-1 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was not-affected [0.12.1+git20120407.aaa852f-1+deb7u1]] |
| lucid | ignored | end of life |
| precise | ignored | end of life |
| precise/esm | DNE | precise was needed |
| quantal | ignored | end of life |
| raring | ignored | end of life |
| saucy | ignored | end of life |
| trusty | not-affected | 0.12.1+git20120407.aaa852f-1+deb7u1 |
Показывать по
EPSS
6.8 Medium
CVSS2
Связанные уязвимости
lib/sup/message_chunks.rb in Sup before 0.13.2.1 and 0.14.x before 0.14.1.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the content_type of an email attachment.
lib/sup/message_chunks.rb in Sup before 0.13.2.1 and 0.14.x before 0.1 ...
Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации
EPSS
6.8 Medium
CVSS2