CVE-2011-1400

The default configuration of the shell_escape_commands directive in conf/texmf.d/95NonPath.cnf in the tex-common package before 2.08.1 in Debian GNU/Linux squeeze, Ubuntu 10.10 and 10.04 LTS, and possibly other operating systems lists certain programs, which might allow remote attackers to execute arbitrary code via a crafted TeX document.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 83%
VendorProductVersion
debiantex-common
0.1
debiantex-common
0.2
debiantex-common
0.3
debiantex-common
0.4
debiantex-common
0.5
debiantex-common
0.6
debiantex-common
0.7
debiantex-common
0.8
debiantex-common
0.9
debiantex-common
0.10
debiantex-common
0.11
debiantex-common
0.12
debiantex-common
0.13
debiantex-common
0.14
debiantex-common
0.15
debiantex-common
0.16
debiantex-common
0.17
debiantex-common
0.18
debiantex-common
0.19
debiantex-common
0.20
debiantex-common
0.21
debiantex-common
0.22
debiantex-common
0.23
debiantex-common
0.24
debiantex-common
0.25
debiantex-common
0.26
debiantex-common
0.27
debiantex-common
0.28
debiantex-common
0.29
debiantex-common
0.30
debiantex-common
0.31
debiantex-common
0.32
debiantex-common
0.33
debiantex-common
0.34
debiantex-common
0.35
debiantex-common
0.36
debiantex-common
0.37
debiantex-common
0.38
debiantex-common
0.39
debiantex-common
0.40
debiantex-common
0.41
debiantex-common
0.42
debiantex-common
0.43
debiantex-common
0.44
debiantex-common
1.0
debiantex-common
1.1
debiantex-common
1.2
debiantex-common
1.3
debiantex-common
1.4
debiantex-common
1.5
debiantex-common
1.6
debiantex-common
1.7
debiantex-common
1.8
debiantex-common
1.9
debiantex-common
1.10
debiantex-common
1.11
debiantex-common
1.11.1
debiantex-common
1.11.2
debiantex-common
1.11.3
debiantex-common
1.12
debiantex-common
1.13
debiantex-common
1.14
debiantex-common
1.15
debiantex-common
1.16
debiantex-common
1.17
debiantex-common
1.18
debiantex-common
1.19
debiantex-common
1.20
debiantex-common
2.00
debiantex-common
2.01
debiantex-common
2.02
debiantex-common
2.03
debiantex-common
2.04
debiantex-common
2.05
debiantex-common
2.06
debiantex-common
2.07
debiantex-common
2.08
canonicalubuntu_linux
10.04
canonicalubuntu_linux
10.10
debiandebian_linux
*
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
tex-common
bullseye
6.16
fixed
sid
6.18
fixed
trixie
6.18
fixed
bookworm
6.18
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
tex-common
maverick
Fixed 2.08ubuntu0.1
released
lucid
Fixed 2.06ubuntu0.1
released
karmic
not-affected
hardy
not-affected
dapper
ignored
Common Weakness Enumeration