|
|
xdg-utils 'xdg-open' and 'xdg-email' Multiple Remote Command Execution Vulnerabilities
|
Bugtraq ID:
|
27528
|
|
Class:
|
Input Validation Error
|
|
CVE:
|
CVE-2008-0386
|
|
Remote:
|
Yes
|
|
Local:
|
No
|
|
Published:
|
Jan 30 2008 12:00AM
|
|
Updated:
|
Feb 25 2008 02:42PM
|
|
Credit:
|
Miroslav Lichvar is credited with the discovery of these vulnerabilities.
|
|
Vulnerable:
|
S.u.S.E. UnitedLinux 1.0
S.u.S.E. SuSE Linux Standard Server 8.0
S.u.S.E. SuSE Linux School Server for i386
S.u.S.E. SUSE LINUX Retail Solution 8.0
S.u.S.E. SuSE Linux Openexchange Server 4.0
S.u.S.E. SUSE Linux Enterprise Server 10 SP1
S.u.S.E. SUSE Linux Enterprise Desktop 10 SP1
S.u.S.E. SLE SDK 10.SP1
S.u.S.E. openSUSE 10.3
S.u.S.E. openSUSE 10.2
S.u.S.E. Novell Linux POS 9
S.u.S.E. Novell Linux Desktop 9.0
S.u.S.E. Linux Professional 10.0 OSS
S.u.S.E. Linux Professional 10.1
S.u.S.E. Linux Personal 10.0 OSS
S.u.S.E. Linux Personal 10.1
S.u.S.E. Linux Openexchange Server
S.u.S.E. Linux Enterprise Server 9
S.u.S.E. Linux Enterprise Server 8
MandrakeSoft Linux Mandrake 2008.0 x86_64
MandrakeSoft Linux Mandrake 2008.0
MandrakeSoft Linux Mandrake 2007.1 x86_64
MandrakeSoft Linux Mandrake 2007.1
Gentoo x11-misc/xdg-utils 1.0.1
|
|
|
|
Not Vulnerable:
|
Gentoo x11-misc/xdg-utils 1.0.2-r1
|
|

|