Sketch Arbitrary Shell Command Execution Vulnerability

Sketch is a vector drawing tool for illustrations, diagrams and other purposes, and is maintained by Bernhard Herzog.

An issue has been discovered in Sketch which could allow a user to execute arbitrary shell commands on a user's system. The flaw exists when a user attempts to access a file containing an unusually crafted EPS filename.


 

Privacy Statement
Copyright 2010, SecurityFocus