Security Advisory

CVE-2015-1877

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-06-02 16:34:34
Last updated 2024-08-06 04:54:16
Assigner debian
State PUBLISHED

Description

The open_generic_xdg_mime function in xdg-open in xdg-utils 1.1.0 rc1 in Debian, when using dash, does not properly handle local variables, which allows remote attackers to execute arbitrary commands via a crafted file.