improper shell quoting
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
enemies-of-carlotta (Ubuntu) |
Fix Released
|
Undecided
|
Unassigned | ||
Breezy |
Invalid
|
Undecided
|
Unassigned | ||
Dapper |
Fix Released
|
Undecided
|
William Grant | ||
Edgy |
Fix Released
|
Undecided
|
William Grant | ||
Feisty |
Invalid
|
Undecided
|
Unassigned |
Bug Description
Binary package hint: enemies-of-carlotta
As reported by upstream:
--Start--
Antti-Juhani Kaijanaho found a security problem in EoC, both the 1.0.3
and the 1.2.3 versions. The problem is that EoC did not quote shell
arguments properly. I have fixed the problem in 1.2.4, which contains no
other changes relative to 1.2.3. This problem has the code
CVE-2006-5875.
You can find the 1.2.4 version from the EoC website:
http://
unstable.
Debian's stable contains 1.0.3, and I have prepared a patch for that. It
is actually essentially the same patch as was used to create 1.2.4. The
Debian security team has uploaded a fixed version of the 1.0.3 package
to security.
not running Debian wants to stay with 1.0.3, but I won't be releasing a
1.0.4 unless someone really needs it (if you do, please tell me
immediately).
For risk assessment: I was unable to come up with an exploit. Doing so
would require getting a certain kind of construct through the SMTP level
to EoC, and I wasn't able to make that happen, but I would not rely on
it being impossible. Therefore, please upgrade immediately.
I apologize for this problem. It was amateurish to let the problematic
code into a released version of the program, I knew better than do that.
--EOM--
CVE References
Changed in enemies-of-carlotta: | |
status: | Unconfirmed → Rejected |
status: | Unconfirmed → Confirmed |
status: | Unconfirmed → Confirmed |
status: | Unconfirmed → Confirmed |
Changed in enemies-of-carlotta: | |
status: | New → Fix Released |
Changed in enemies-of-carlotta: | |
status: | In Progress → Fix Committed |
status: | In Progress → Fix Committed |
Debian debdiff attached from Lars Wirzenius.