CVE-2024-32487
Published Apr 13, 2024less through 653 allows OS command execution via a newline character in the name of a file, because quoting is mishandled in filename.c. Exploitation typically requires use with a…
Vendor/product archive
2 CVEs tagged to greenwoodsoftware / less — 0 Critical, 2 High, 0 Medium, 0 Low, 0 Unrated.
less through 653 allows OS command execution via a newline character in the name of a file, because quoting is mishandled in filename.c. Exploitation typically requires use with a…
close_altfile in filename.c in less before 606 omits shell_quote calls for LESSCLOSE.