CyberSec.Space Logo
返回 CVE 瀏覽器

CVE-2021-40084

CRITICAL
9.8
CVSS Severity Score
EPSS Score0.0560%
EPSS Percentile22.14th
Published2021年8月25日
Last Modified2024年11月21日

Vulnerability Description

opensysusers through 0.6 does not safely use eval on files in sysusers.d that may contain shell metacharacters. For example, it allows command execution via a crafted GECOS field whereas systemd-sysusers (a program with the same specification) does not do that.

Affected Platforms (CPE)

📦
Artixlinux

Opensysusers

<= 0.6

References & Advisories

相關漏洞威脅