First published: Wed Dec 24 2014(Updated: )
The expand function in fio.c in Heirloom mailx 12.5 and earlier and BSD mailx 8.1.2 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in an email address.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Linux | =6 | |
Oracle Linux | =7 | |
Red Hat Enterprise Linux | =7.0 | |
Red Hat Enterprise Linux | =6.0 | |
Bsd Mailx Project Bsd Mailx | <=8.1.2 | |
Heirloom mailx | <=12.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.