QID 980717
QID 980717: Nodejs (npm) Security Update for libnotify (GHSA-6898-wx94-8jq8)
Versions 1.0.3 and earlier of libnotify are affected by a shell command injection vulnerability. This may result in execution of arbitrary shell commands, if user input is passed into libnotify.notify.
Untrusted input passed in the call to libnotify.notify could result in execution of shell commands. Callers may be unaware of this.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-6898-wx94-8jq8 for updates pertaining to this vulnerability.
Vendor References
- GHSA-6898-wx94-8jq8 -
github.com/advisories/GHSA-6898-wx94-8jq8
CVEs related to QID 980717
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-6898-wx94-8jq8 | libnotify |
|