Vulnerability Bulletins

DSA-4291 mgetty - security update

   
Affected software Debian
 
Two input sanitization failures have been found in the faxrunq and faxqbinaries in mgetty, a smart modem getty replacement. An attacker could leveragethem to insert commands via shell metacharacters in jobs id and have themexecuted with the privilege of the faxrunq/faxq user.

More info:

https://www.debian.org/security/2018/dsa-4291