Revision Date: | 2022-06-30 | Version: | 1 |
Title: | CVE-2008-4690 |
Description: |
lynx 2.8.6dev.15 and earlier, when advanced mode is enabled and lynx is configured as a URL handler, allows remote attackers to execute arbitrary commands via a crafted lynxcgi: URL, a related issue to CVE-2005-2929. NOTE: this might only be a vulnerability in limited deployments that have defined a lynxcgi: handler.
|
Family: | unix | Class: | vulnerability |
Status: | | Reference(s): | CVE-2008-4690 Mitre CVE-2008-4690 SUSE CVE-2008-4690 SUSE-SR:2009:002 SUSE-SR:2009:002
|
Platform(s): | Novell Linux Desktop 9 SDK for x86 Novell Linux Desktop 9 SDK for x86_64 openSUSE 10.3 openSUSE 11.0 openSUSE 13.2 openSUSE Leap 42.1 openSUSE Leap 42.2 openSUSE Leap 42.3 openSUSE Tumbleweed SLES SDK 9 for IBM iSeries and IBM pSeries SLES SDK 9 for IBM S/390 and IBM zSeries SLES SDK 9 for IBM zSeries SLES SDK 9 for IPF SLES SDK 9 for x86 SLES SDK 9 for X86-64 SUSE Linux Enterprise SDK 10 SP2 SUSE Linux Enterprise Software Development Kit 11 SP4
| Product(s): | |
Definition Synopsis |
openSUSE 13.2 is installed AND lynx-2.8.8rel.2-2.1.3 is installed
|
Definition Synopsis |
openSUSE Leap 42.1 is installed
AND Package Information
lynx-2.8.7-3.2 is installed
AND lynx is signed with openSUSE key
|
Definition Synopsis |
openSUSE Leap 42.2 is installed
AND Package Information
lynx-2.8.7-4.4 is installed
AND lynx is signed with openSUSE key
|
Definition Synopsis |
sles10-sp2-sdk is installed
AND lynx less than 2.8.5-51.6
|
Definition Synopsis |
SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
AND lynx-2.8.6-143 is installed
|
Definition Synopsis |
openSUSE Leap 42.3 is installed
AND Package Information
lynx-2.8.7-9 is installed
AND lynx is signed with openSUSE key
|
Definition Synopsis |
openSUSE Tumbleweed is installed
AND lynx-2.8.8rel.2-4.13 is installed
|