Bug #19516
closed
Bug #19442: Command injection in plugins repository file names
Incorrect program execution
Added by Alexis Mousset over 3 years ago.
Updated over 3 years ago.
Category:
Plugins integration
Description
One of the commands calls gpg and not /usr/bin/gpg
- Status changed from New to In progress
- Assignee set to Alexis Mousset
- Assignee changed from Alexis Mousset to Vincent MEMBRÉ
- Assignee changed from Vincent MEMBRÉ to Félix DALLIDET
- Pull Request set to https://github.com/Normation/rudder/pull/3707
- Status changed from In progress to Pending release
- Fix check changed from To do to Checked
- Status changed from Pending release to Released
This bug has been fixed in Rudder 6.1.14 and 6.2.8 which were released today.
Also available in: Atom
PDF