Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

Debian: New yarssr packages fix arbitrary shell command

BugsAlert Home > Debian: New yarssr packages fix arbitrary shell command
 
 

LinuxSecurity.com: Duncan Gilmore discovered that yarssr, an RSS aggregator and reader, performs insufficient input sanitising, which could result in the execution of arbitrary shell commands if a malformed feed is read.




Original Source: http://www.linuxsecurity.com/content/view/133827?rdf

Learn more about Debian: New yarssr packages fix arbitrary shell command
 
Tags: debian yarssr packages fix arbitrary shell command

Related Items

      Fortinet FortiClient Privilege Escalation Vulnerability

      CVE-2008-1476 (Serendipity)

      CVE-2008-3156 (Panda ActiveScan)

      Mark Rasch: Get Off My Cloud

      CVE-2008-1868 (Pixel Motion Blog)

      FrSIRT - Redhat Secuity Update Fixes JBoss EAP Information Disclosure Issues

      A Growing SoPHISHtication

 

Pixel