Lucene search

K
debiancveDebian Security Bug TrackerDEBIANCVE:CVE-2006-7234
HistoryOct 27, 2008 - 5:21 p.m.

CVE-2006-7234

2008-10-2717:21:27
Debian Security Bug Tracker
security-tracker.debian.org
14

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

EPSS

0

Percentile

0.4%

Untrusted search path vulnerability in Lynx before 2.8.6rel.4 allows local users to execute arbitrary code via malicious (1) .mailcap and (2) mime.types files in the current working directory.

OSVersionArchitecturePackageVersionFilename
Debian12alllynx<Β 2.9.0dev.12-1lynx_2.9.0dev.12-1_all.deb
Debian11alllynx<Β 2.9.0dev.6-3~deb11u1lynx_2.9.0dev.6-3~deb11u1_all.deb
Debian999alllynx<Β 2.9.2-1lynx_2.9.2-1_all.deb
Debian13alllynx<Β 2.9.2-1lynx_2.9.2-1_all.deb

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

EPSS

0

Percentile

0.4%