CVE-2006-3126
Publication date 6 September 2006
Last updated 17 July 2025
Ubuntu priority
Description
c2faxrecv in capi4hylafax 01.02.03 allows remote attackers to execute arbitrary commands via null (\0) and shell metacharacters in the TSI string, as demonstrated by a fax from an anonymous number.