First published: Thu Dec 09 1999(Updated: )
htdig allows remote attackers to execute commands via filenames with shell metacharacters.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Debian Linux | =2.1 | |
=2.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-0978 is considered to have a critical severity due to the potential for remote command execution.
To fix CVE-1999-0978, update to a patched version of htdig that does not allow shell metacharacters in filenames.
HTDig on Debian Linux 2.1 is specifically affected by CVE-1999-0978.
Yes, CVE-1999-0978 can be exploited remotely, allowing attackers to execute arbitrary commands.
Exploiting CVE-1999-0978 can lead to total system compromise and unauthorized access to sensitive information.