Debian Security Advisory 5296-1

Discussion in 'News Aggregator' started by Packet Storm, 7 Dec 2022.

  1. Packet Storm

    Packet Storm Guest

    Debian Linux Security Advisory 5296-1 - Robin Peraglie and Johannes Moritz discovered an argument injection bug in the xfce4-mime-helper component of xfce4-settings, which can be exploited using the xdg-open common tool. Since xdg-open is used by multiple standard applications for opening links, this bug could be exploited by an attacker to run arbitrary code on an user machine by providing a malicious PDF file with specifically crafted links.

    Continue reading...
     

Share This Page

Loading...