CVE-2008-1568

Publication date 31 March 2008

Last updated 24 July 2024


Ubuntu priority

Description

comix 3.6.4 allows attackers to execute arbitrary commands via a filename containing shell metacharacters that are not properly sanitized when executing the rar, unrar, or jpegtran programs.

Status

Package Ubuntu Release Status
comix 9.10 karmic
Fixed 3.6.4-1.1
9.04 jaunty
Fixed 3.6.4-1.1
8.10 intrepid
Fixed 3.6.4-1.1
8.04 LTS hardy
Fixed 3.6.4-1.1
7.10 gutsy Ignored end of life, was needed
7.04 feisty Ignored end of life, was needed
6.10 edgy Ignored end of life, was needed
6.06 LTS dapper Ignored end of life


Access our resources on patching vulnerabilities