|
|
| |
|
| |
konversation: arbitrary code execution
| Package(s): | konversation |
CVE #(s): | CVE-2007-4400
|
| Created: | April 9, 2008 |
Updated: | April 9, 2008 |
| Description: |
From the Red Hat bugzilla:
Media script (/usr/share/apps/konversation/scripts/media) that is distributed
with konversation package reportedly does not escape tags from media files
corr[e]ctly allowing command injection into IRC channel. |
| Alerts: |
|
( Log in to post comments)
|
|
|