CVE-2004-1175
Publication date 14 April 2005
Last updated 17 July 2025
Ubuntu priority
Description
fish.c in midnight commander allows remote attackers to execute arbitrary programs via "insecure filename quoting," possibly using shell metacharacters.