man prior to 1.5l allows malicious users to execute arbitrary code via a malformed man file with improper quotes, which causes the my_xsprintf function to return a string with the value "unsafe," which is then executed as a program via a system call if it is in the search path of the user who runs man.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
andries brouwer man 1.5h1 |
||
andries brouwer man 1.5i |
||
andries brouwer man 1.5i2 |
||
andries brouwer man 1.5j |
||
andries brouwer man 1.5k |