CVE-2008-5718
26.12.2008, 17:30
The papd daemon in Netatalk before 2.0.4-beta2, when using certain variables in a pipe command for the print file, allows remote attackers to execute arbitrary commands via shell metacharacters in a print request, as demonstrated using a crafted Title.
Vendor | Product | Version |
---|---|---|
netatalk | netatalk | 𝑥 ≤ 2.0.3 |
netatalk | netatalk | 1.4.99-0.20000927 |
netatalk | netatalk | 1.4.99-0.20001108 |
netatalk | netatalk | 1.5:rc1 |
netatalk | netatalk | 1.5:rc2 |
netatalk | netatalk | 1.5.0 |
netatalk | netatalk | 1.5.1 |
netatalk | netatalk | 1.5.1.1 |
netatalk | netatalk | 1.5.2 |
netatalk | netatalk | 1.5.3.1 |
netatalk | netatalk | 1.5.5 |
netatalk | netatalk | 1.5pre3:pre3 |
netatalk | netatalk | 1.5pre4:pre4 |
netatalk | netatalk | 1.5pre5:pre5 |
netatalk | netatalk | 1.5pre6:pre6 |
netatalk | netatalk | 1.5pre7:pre7 |
netatalk | netatalk | 1.5pre8:pre8 |
netatalk | netatalk | 1.6.0 |
netatalk | netatalk | 1.6.1 |
netatalk | netatalk | 1.6.2 |
netatalk | netatalk | 1.6.3 |
netatalk | netatalk | 1.6.4 |
netatalk | netatalk | 1.6.4a:a |
netatalk | netatalk | 2.0:alpha1 |
netatalk | netatalk | 2.0:alpha2 |
netatalk | netatalk | 2.0:beta1 |
netatalk | netatalk | 2.0:beta2 |
netatalk | netatalk | 2.0:rc1 |
netatalk | netatalk | 2.0:rc2 |
netatalk | netatalk | 2.0.0 |
netatalk | netatalk | 2.0.1 |
netatalk | netatalk | 2.0.2 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
References