Jump to content

Recommended Posts

  • Replies 9.6k
  • Created
  • Last Reply

Top Posters In This Topic

  • securitybreach

    6815

  • amenditman

    742

  • sunrat

    451

  • crp

    341

V.T. Eric Layton
Posted

And maybe second bourbon.

  • Agree 1
Posted

More a chuckle funny than laugh funny, but humour shows up in the strangest places. This is from Debian security updates:

 

Debian Security Advisory DSA-4819-1                   security@debian.org
https://www.debian.org/security/                       Moritz Muehlenhoff
December 26, 2020                     https://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package        : kitty
CVE ID         : CVE-2020-35605

Stephane Chauveau discovered that the graphics protocol implementation in
Kitty, a GPU-based terminal emulator, did not sanitise a filename when
returning an error message, which could result in the execution of
arbitrary shell commands when displaying a file with cat.
  • Haha 2
  • +1 1

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.


×
×
  • Create New...