UbuntuUpdates.org

Bugs fixes in "less"

Origin Bug number Title Date fixed
CVE CVE-2024-32487 less through 653 allows OS command execution via a newline character in the name of a file, because quoting is mishandled in filename.c. Exploitation 2024-04-29
CVE CVE-2024-32487 less through 653 allows OS command execution via a newline character in the name of a file, because quoting is mishandled in filename.c. Exploitation 2024-04-29
CVE CVE-2024-32487 less through 653 allows OS command execution via a newline character in the name of a file, because quoting is mishandled in filename.c. Exploitation 2024-04-29
CVE CVE-2024-32487 less through 653 allows OS command execution via a newline character in the name of a file, because quoting is mishandled in filename.c. Exploitation 2024-04-29
CVE CVE-2024-32487 less through 653 allows OS command execution via a newline character in the name of a file, because quoting is mishandled in filename.c. Exploitation 2024-04-29
CVE CVE-2024-32487 less through 653 allows OS command execution via a newline character in the name of a file, because quoting is mishandled in filename.c. Exploitation 2024-04-29
CVE CVE-2022-48624 close_altfile in filename.c in less before 606 omits shell_quote calls for LESSCLOSE. 2024-02-27
CVE CVE-2022-48624 close_altfile in filename.c in less before 606 omits shell_quote calls for LESSCLOSE. 2024-02-27
CVE CVE-2022-48624 close_altfile in filename.c in less before 606 omits shell_quote calls for LESSCLOSE. 2024-02-27
CVE CVE-2022-48624 close_altfile in filename.c in less before 606 omits shell_quote calls for LESSCLOSE. 2024-02-27
CVE CVE-2022-46663 In GNU Less before 609, crafted data can result in "less -R" not filtering ANSI escape sequences sent to the terminal. 2023-02-09
CVE CVE-2022-46663 In GNU Less before 609, crafted data can result in "less -R" not filtering ANSI escape sequences sent to the terminal. 2023-02-09



About   -   Send Feedback to @ubuntu_updates