Описание
An issue was discovered in zsh before 5.6. Shebang lines exceeding 64 characters were truncated, potentially leading to an execve call to a program name that is a substring of the intended one.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | released | 5.4.2-3ubuntu3.1 |
| devel | released | 5.5.1-1ubuntu2 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was released [5.0.2-3ubuntu6.3]] |
| esm-infra/bionic | released | 5.4.2-3ubuntu3.1 |
| esm-infra/xenial | released | 5.1.1-1ubuntu2.3 |
| precise/esm | DNE | |
| trusty | released | 5.0.2-3ubuntu6.3 |
| trusty/esm | DNE | trusty was released [5.0.2-3ubuntu6.3] |
| upstream | released | 5.6-1 |
| xenial | released | 5.1.1-1ubuntu2.3 |
Показывать по
EPSS
7.5 High
CVSS2
9.8 Critical
CVSS3
Связанные уязвимости
An issue was discovered in zsh before 5.6. Shebang lines exceeding 64 characters were truncated, potentially leading to an execve call to a program name that is a substring of the intended one.
An issue was discovered in zsh before 5.6. Shebang lines exceeding 64 characters were truncated, potentially leading to an execve call to a program name that is a substring of the intended one.
An issue was discovered in zsh before 5.6. Shebang lines exceeding 64 ...
An issue was discovered in zsh before 5.6. Shebang lines exceeding 64 characters were truncated, potentially leading to an execve call to a program name that is a substring of the intended one.
ELSA-2019-2017: zsh security and bug fix update (MODERATE)
EPSS
7.5 High
CVSS2
9.8 Critical
CVSS3