Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
do_ed_script in pch.c in GNU patch through 2.7.6 does not block strings beginning with a ! character. NOTE: this is the same commit as for CVE-2019-13638, but the ! syntax is specific to ed, and is unrelated to a shell metacharacter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
GNU patch 操作系统命令注入漏洞
Vulnerability Description
GNU patch是GNU计划的一套用于生成补丁文件的工具。 GNU patch 2.7.6及之前版本中的pch.c文件的‘do_ed_script’函数存在安全漏洞,该漏洞源于程序接收了开头为!字符的字符串。目前尚无此漏洞的相关信息,请随时关注CNNVD或厂商公告。
CVSS Information
N/A
Vulnerability Type
N/A