First published: Thu Mar 24 2022(Updated: )
GNOME OCRFeeder before 0.8.4 allows OS command injection via shell metacharacters in a PDF or image filename.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GNOME OCRFeeder | <0.8.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-27811 is a vulnerability in GNOME OCRFeeder before version 0.8.4 that allows OS command injection via shell metacharacters in a PDF or image filename.
CVE-2022-27811 has a severity rating of 9.8, which is considered critical.
GNOME OCRFeeder versions up to and excluding 0.8.4 are affected by CVE-2022-27811.
To fix CVE-2022-27811, users should update their GNOME OCRFeeder installation to version 0.8.4 or newer.
CVE-2022-27811 is associated with CWE-77 (Command Injection) and CWE-78 (OS Command Injection).