jhead 'DoCommand()' Arbitrary File Deletion Vulnerability

Bugtraq ID: 32506
Class: Input Validation Error
CVE: CVE-2008-4640
Remote: Yes
Local: No
Published: Oct 16 2008 12:00AM
Updated: Apr 13 2015 09:38PM
Credit: John Dong
Vulnerable: S.u.S.E. openSUSE 11.1
S.u.S.E. openSUSE 11.0
S.u.S.E. openSUSE 10.3
Matthias Wandel jhead 2.84
Matthias Wandel jhead 2.83
Mandriva Linux Mandrake 2009.0 x86_64
Mandriva Linux Mandrake 2009.0
Mandriva Linux Mandrake 2008.1 x86_64
Mandriva Linux Mandrake 2008.1
Mandriva Linux Mandrake 2008.0 x86_64
Mandriva Linux Mandrake 2008.0
Gentoo Linux
Not Vulnerable:


 

Privacy Statement
Copyright 2010, SecurityFocus