Back

HIGH

security flaw

Published Oct 13, 2000

Description

xpdf PDF viewer client earlier than 0.91 does not properly launch a web browser for embedded URL's, which allows an attacker to execute arbitrary commands via a URL that contains shell metacharacters.

Affected products

Remediation

Red Hat statement

This issue was fixed in the following products: - Red Hat Linux 5.2 - RHSA-2000:060 (2000-09-13) - Red Hat Linux 6.2 - RHSA-2000:060 (2000-09-13)

Metrics

Weaknesses (0)

No CWE recorded.

References (10)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Oct 13, 2000
Updated Aug 8, 2024
Reserved Sep 19, 2000
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity n/a
Public date Aug 29, 2000