MGASA-2017-0292

Source
https://advisories.mageia.org/MGASA-2017-0292.html
Import Source
https://advisories.mageia.org/MGASA-2017-0292.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2017-0292
Related
Published
2017-08-21T20:00:42Z
Modified
2017-08-21T19:40:18Z
Summary
Updated shutter packages fix security vulnerability
Details

Remote attackers could trick users into assisting them in executing arbitrary commands via a crafted image name that is mishandled during a "Run a plugin" action (CVE-2016-10081).

References
Credits

Affected packages

Mageia:6 / shutter

Package

Name
shutter
Purl
pkg:rpm/mageia/shutter?distro=mageia-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.93.1-6.1.mga6

Ecosystem specific

{
    "section": "core"
}

Mageia:5 / shutter

Package

Name
shutter
Purl
pkg:rpm/mageia/shutter?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.93.1-1.2.mga5

Ecosystem specific

{
    "section": "core"
}