feh '--wget-timestamp' Remote Code Execution Vulnerability
BID:41161
Info
feh '--wget-timestamp' Remote Code Execution Vulnerability
| Bugtraq ID: | 41161 |
| Class: | Input Validation Error |
| CVE: |
CVE-2010-2246 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 25 2010 12:00AM |
| Updated: | Apr 13 2015 09:21PM |
| Credit: | Reported by the vendor |
| Vulnerable: |
Gentoo Linux derf feh 1.6.1 derf feh 1.3.8 derf feh 1.7 derf feh 1.6 derf feh 1.5 derf feh 1.4 |
| Not Vulnerable: |
derf feh 1.8 |
Discussion
feh '--wget-timestamp' Remote Code Execution Vulnerability
feh is prone to a remote code-execution vulnerability.
Attackers can exploit this issue to execute arbitrary code in the context of the user running the application. Successful exploits will compromise the application and possibly the computer.
feh is prone to a remote code-execution vulnerability.
Attackers can exploit this issue to execute arbitrary code in the context of the user running the application. Successful exploits will compromise the application and possibly the computer.
Exploit / POC
feh '--wget-timestamp' Remote Code Execution Vulnerability
An attacker can exploit this issue by enticing an unsuspecting victim to open a malicious URI using the application.
The following example command line argument is available:
feh --wget-timestamp 'http://www.example.com/stuff/bar`touch lol_hax`.jpg'
An attacker can exploit this issue by enticing an unsuspecting victim to open a malicious URI using the application.
The following example command line argument is available:
feh --wget-timestamp 'http://www.example.com/stuff/bar`touch lol_hax`.jpg'
Solution / Fix
feh '--wget-timestamp' Remote Code Execution Vulnerability
Solution:
The vendor has released an advisory along with fixes. Please see the references for details.
Solution:
The vendor has released an advisory along with fixes. Please see the references for details.
References
feh '--wget-timestamp' Remote Code Execution Vulnerability
References:
References:
- feh Changelog (derf)
- feh Homepage (derf)