6.8

CVE-2011-1400

The default configuration of the shell_escape_commands directive in conf/texmf.d/95NonPath.cnf in the tex-common package before 2.08.1 in Debian GNU/Linux squeeze, Ubuntu 10.10 and 10.04 LTS, and possibly other operating systems lists certain programs, which might allow remote attackers to execute arbitrary code via a crafted TeX document.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
DebianTex-common Version0.1
DebianTex-common Version0.2
DebianTex-common Version0.3
DebianTex-common Version0.4
DebianTex-common Version0.5
DebianTex-common Version0.6
DebianTex-common Version0.7
DebianTex-common Version0.8
DebianTex-common Version0.9
DebianTex-common Version0.10
DebianTex-common Version0.11
DebianTex-common Version0.12
DebianTex-common Version0.13
DebianTex-common Version0.14
DebianTex-common Version0.15
DebianTex-common Version0.16
DebianTex-common Version0.17
DebianTex-common Version0.18
DebianTex-common Version0.19
DebianTex-common Version0.20
DebianTex-common Version0.21
DebianTex-common Version0.22
DebianTex-common Version0.23
DebianTex-common Version0.24
DebianTex-common Version0.25
DebianTex-common Version0.26
DebianTex-common Version0.27
DebianTex-common Version0.28
DebianTex-common Version0.29
DebianTex-common Version0.30
DebianTex-common Version0.31
DebianTex-common Version0.32
DebianTex-common Version0.33
DebianTex-common Version0.34
DebianTex-common Version0.35
DebianTex-common Version0.36
DebianTex-common Version0.37
DebianTex-common Version0.38
DebianTex-common Version0.39
DebianTex-common Version0.40
DebianTex-common Version0.41
DebianTex-common Version0.42
DebianTex-common Version0.43
DebianTex-common Version0.44
DebianTex-common Version1.0
DebianTex-common Version1.1
DebianTex-common Version1.2
DebianTex-common Version1.3
DebianTex-common Version1.4
DebianTex-common Version1.5
DebianTex-common Version1.6
DebianTex-common Version1.7
DebianTex-common Version1.8
DebianTex-common Version1.9
DebianTex-common Version1.10
DebianTex-common Version1.11
DebianTex-common Version1.11.1
DebianTex-common Version1.11.2
DebianTex-common Version1.11.3
DebianTex-common Version1.12
DebianTex-common Version1.13
DebianTex-common Version1.14
DebianTex-common Version1.15
DebianTex-common Version1.16
DebianTex-common Version1.17
DebianTex-common Version1.18
DebianTex-common Version1.19
DebianTex-common Version1.20
DebianTex-common Version2.00
DebianTex-common Version2.01
DebianTex-common Version2.02
DebianTex-common Version2.03
DebianTex-common Version2.04
DebianTex-common Version2.05
DebianTex-common Version2.06
DebianTex-common Version2.07
DebianTex-common Version2.08
CanonicalUbuntu Linux Version10.04 Update- Editionlts
CanonicalUbuntu Linux Version10.10
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 3.07% 0.863
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.8 8.6 6.4
AV:N/AC:M/Au:N/C:P/I:P/A:P