Untrusted search path vulnerability in the add_filename_to_string function in intl/gettext/loadmsgcat.c for Elinks 0.11.1 allows local users to cause Elinks to use an untrusted gettext message catalog (.po file) in a "../po" directory, which can be leveraged to conduct format string attacks.
CVSS Details
- CVSS 3.1 Base Score: 5.6
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade elinks | Dec 1, 2016 | Apr 13, 2007 |
| Debian | — | Upgrade elinks | Jul 30, 2024 | Apr 13, 2007 |
| Gentoo Linux | — | Upgrade www-client/elinks. | Oct 30, 2017 | Apr 13, 2007 |
| Oracle_linux | — | Upgrade elinks | Oct 16, 2024 | Apr 13, 2007 |
| Ubuntu | — | Upgrade elinks | Nov 8, 2024 | Apr 13, 2007 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub