LWN.net Logo

beagle: command line injection

Package(s):beagle CVE #(s):
Created:April 21, 2006 Updated:April 26, 2006
Description: Chris Evans discovered that while indexing, Beagle will build certain command lines in an insecure manner. When Beagle executes external helper applications, it is possible to cause beagle to execute arbitrary commands as the user running beagle.
Alerts:
Fedora FEDORA-2006-440 2006-04-21

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds