CVE-2001-0370

fcheck prior to 2.57.59 calls the file signature checking program insecurely, which can allow a local user to run arbitrary commands via a file name that contains shell metacharacters.
Configurations

Configuration 1 (hide)

cpe:2.3:a:michael_a._gumienny:fcheck:*:*:*:*:*:*:*:*

History

20 Nov 2024, 23:35

Type Values Removed Values Added
References () http://marc.info/?l=bugtraq&m=98521301510554&w=2 - () http://marc.info/?l=bugtraq&m=98521301510554&w=2 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/6256 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/6256 -

Information

Published : 2001-06-27 04:00

Updated : 2025-04-03 01:03


NVD link : CVE-2001-0370

Mitre link : CVE-2001-0370

CVE.ORG link : CVE-2001-0370


JSON object : View

Products Affected

michael_a._gumienny

  • fcheck