[Portland-bugs] [Bug 66670] xdg-open: command injection vulnerability

bugzilla-daemon at freedesktop.org bugzilla-daemon at freedesktop.org
Sun Jul 7 08:28:09 PDT 2013


https://bugs.freedesktop.org/show_bug.cgi?id=66670

--- Comment #1 from Chris Reffett <creffett at gentoo.org> ---
This looks kind of similar to CVE-2008-0386 [1], though I don't believe shell
metacharacters are the issue here. Different causes, similar impact.

-- 
You are receiving this mail because:
You are the assignee for the bug.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.freedesktop.org/archives/portland-bugs/attachments/20130707/f40c4bde/attachment.html>


More information about the Portland-bugs mailing list