The psub function in fish (aka fish-shell) 1.16.0 prior to 2.1.1 does not properly create temporary files, which allows local users to execute arbitrary commands via a temporary file with a predictable name.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
fishshell fish |