Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2006-6979
Description:The ruby handlers in the Magnatune component in Amarok do not properly quote text in certain contexts, probably including construction of an unzip command line, which allows attackers to execute arbitrary commands via shell metacharacters.
Test IDs: 1.3.6.1.4.1.25623.1.0.58128  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2006-6979
BugTraq ID: 22568
http://www.securityfocus.com/bid/22568
http://security.gentoo.org/glsa/glsa-200703-11.xml
http://bugs.gentoo.org/show_bug.cgi?id=166901
http://bugs.kde.org/show_bug.cgi?id=138499
http://secunia.com/advisories/23984
http://secunia.com/advisories/24159
http://secunia.com/advisories/24510
SuSE Security Announcement: SUSE-SR:2007:002 (Google Search)
http://lists.suse.com/archive/suse-security-announce/2007-Jan/0015.html
http://www.vupen.com/english/advisories/2007/0613




© 1998-2025 E-Soft Inc. All rights reserved.