CVE-2024-3566
10.04.2024, 16:15
A command inject vulnerability allows an attacker to perform command injection on Windows applications that indirectly depend on the CreateProcess function when the specific conditions are satisfied.
| Vendor | Product | Version |
|---|---|---|
| golang | go | * |
| haskell | process_library | 1.6.19.0 |
| nodejs | node.js | 𝑥 ≤ 21.7.2 |
| php | php | * |
| rust-lang | rust | 1.77.2 |
| yt-dlp_project | yt-dlp | * |
𝑥
= Vulnerable software versions
Debian Releases
References