ISOMAN

CVE

CVE-2018-1083

Zsh before version 5.4.2-test-1 is vulnerable to a buffer overflow in the shell autocomplete functionality. A local unprivileged user can create a specially crafted directory path which leads to code execution in the context of the user who tries to use autocomplete to traverse the before mentioned path. If the user affected is privileged, this leads to privilege escalation.

Severity
HIGH
CVSS
7.8
Published
Modified

Linked Releases

References

  1. http://www.securityfocus.com/bid/103572
  2. https://access.redhat.com/errata/RHSA-2018:1932
  3. https://access.redhat.com/errata/RHSA-2018:3073
  4. https://bugzilla.redhat.com/show_bug.cgi?id=1557382
  5. https://lists.debian.org/debian-lts-announce/2018/03/msg00038.html
  6. https://lists.debian.org/debian-lts-announce/2020/12/msg00000.html
  7. https://security.gentoo.org/glsa/201805-10
  8. https://sourceforge.net/p/zsh/code/ci/259ac472eac291c8c103c7a0d8a4eaf3c2942ed7
  9. https://usn.ubuntu.com/3608-1/
  10. http://www.securityfocus.com/bid/103572
  11. https://access.redhat.com/errata/RHSA-2018:1932
  12. https://access.redhat.com/errata/RHSA-2018:3073
  13. https://bugzilla.redhat.com/show_bug.cgi?id=1557382
  14. https://lists.debian.org/debian-lts-announce/2018/03/msg00038.html
  15. https://lists.debian.org/debian-lts-announce/2020/12/msg00000.html
  16. https://security.gentoo.org/glsa/201805-10
  17. https://sourceforge.net/p/zsh/code/ci/259ac472eac291c8c103c7a0d8a4eaf3c2942ed7
  18. https://usn.ubuntu.com/3608-1/