Oval Definition:
oval:org.opensuse.security:def:20050638
Revision Date
:
2015-11-16
Version
:
1
Title
:
CVE-2005-0638
Description
:
xloadimage before 4.1-r2, and xli before 1.17, allows attackers to execute arbitrary commands via shell metacharacters in filenames for compressed images, which are not properly quoted when calling the gunzip command.
Family
:
unix
Class
:
vulnerability
Status
:
Reference(s)
:
CVE-2005-0638
Platform(s)
:
SuSE Linux 8.2 for IA32
SuSE Linux 9.0 for AMD64
SuSE Linux 9.0 for IA32
SUSE LINUX 9.1 for IA32
SUSE LINUX 9.2
SUSE LINUX 9.3
Product(s)
:
Definition Synopsis
Release Information
suse82 is installed
AND
xli less than 1.17.0-304
OR
Package Information
suse91 is installed
AND
xli less than 1.17.0-298.2
OR
Package Information
suse92 is installed
AND
xli less than 1.17.0-299.2
OR
Package Information
suse93 is installed
AND
xli less than 1.17.0-300.2
BACK