CVE-2012-2085

Publication date 28 August 2012

Last updated 24 July 2024


Ubuntu priority

Description

The exec_command function in common/helpers.py in Gajim before 0.15 allows user-assisted remote attackers to execute arbitrary commands via shell metacharacters in an href attribute.

Status

Package Ubuntu Release Status
gajim 12.04 LTS precise
Fixed 0.15-1
11.10 oneiric
Fixed 0.14.1-1ubuntu1.1
11.04 natty
Fixed 0.13.4-3ubuntu2.1
10.10 maverick Ignored end of life
10.04 LTS lucid
Fixed 0.13-0ubuntu2.1
8.04 LTS hardy Ignored end of life


Access our resources on patching vulnerabilities