First published: Mon Mar 25 2024(Updated: )
Vincent Berg discovered that CRM shell incorrectly handled certain commands. An local attacker could possibly use this issue to execute arbitrary code via shell code injection to the crm history commandline.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/crmsh | <4.2.0-2ubuntu1.1 | 4.2.0-2ubuntu1.1 |
Ubuntu Ubuntu | =20.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.