CVE-2006-1865 Information

Description

Argument injection vulnerability in Beagle before 0.2.5 allows attackers to execute arbitrary commands via crafted filenames that inject command line arguments when Beagle launches external helper applications while indexing.

Reference

http://lists.seifried.org/pipermail/security/2006-April/013163.html http://scary.beasts.org/security/CESA-2006-002.html http://secunia.com/advisories/19778 http://secunia.com/advisories/19781 http://secunia.com/advisories/19897 http://www.novell.com/linux/security/advisories/2006_04_28.html http://www.osvdb.org/24938 http://www.securityfocus.com/bid/17611 https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=189282 https://exchange.xforce.ibmcloud.com/vulnerabilities/26104

Share on: