First published: Wed Jan 21 2015(Updated: )
Eval injection vulnerability in xdg-utils 1.1.0 RC1, when no supported desktop environment is identified, allows context-dependent attackers to execute arbitrary code via the URL argument to xdg-open.
Credit: security@debian.org
Affected Software | Affected Version | How to fix |
---|---|---|
Gentoo Xdg-utils | =1.1.0-rc1 | |
debian/xdg-utils | 1.1.3-1+deb10u1 1.1.3-4.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.