https://seclists.org/oss-sec/2024/q2/63: CVE-2024-24576: Rust 1.77.1 and earlier did not properly escape arguments of batch files on Windows
Published Apr 9, 2024
·Updated
Affected Software
1 affected component
Rust Rust<=1.77.1
Frequently Asked Questions
1
What is the severity of CVE-2024-24576?
CVE-2024-24576 is classified as a moderate severity vulnerability due to improper escaping of arguments in batch files on Windows.
2
How do I fix CVE-2024-24576?
To fix CVE-2024-24576, upgrade to Rust version 1.77.2 or later where the argument escaping issue is addressed.
3
What systems are affected by CVE-2024-24576?
CVE-2024-24576 affects Rust versions 1.77.1 and earlier on Windows systems.
4
What is the impact of CVE-2024-24576?
The impact of CVE-2024-24576 is the potential execution of arbitrary commands through poorly escaped arguments in batch files.
5
When was CVE-2024-24576 published?
CVE-2024-24576 was published on April 9, 2024.