DSA-2997 reportbug - security update
|
Información sobre el sistema
|
|
|
Software afectado |
Debian |
Descripción
|
Jakub Wilk discovered a remote command execution flaw in reportbug, atool to report bugs in the Debian distribution. A man-in-the-middleattacker could put shell metacharacters in the version number allowingarbitrary code execution with the privileges of the user runningreportbug.
More info:
https://www.debian.org/security/2014/dsa-2997 |
Identificadores estándar
|
Propiedad |
Valor |
CVE |
CVE-2014-0479 and DSA-2997. |