Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 524
Alerts This Week
Warning Icon 1 524

Gentoo: GLSA-200911-06 High Severity: Command Injection Threat

gentoo
Calendar Grey November 26, 2009
Scroller Gentoo
Debian Security Advisory DSA-2023-42 identifies critical vulnerability in PHPMyAdmin, enabling unauthorized data access.
An input sanitation error in PEAR Net_Traceroute might allow remote attackers to execute arbitrary commands.

Summary

Gentoo Linux Security Advisory GLSA 200911-06 https://security.gentoo.org/ Severity: High Title: PEAR Net_Traceroute: Command injection Date: November 26, 2009 Bugs: #294264 ID: 200911-06

Synopsis ======= An input sanitation error in PEAR Net_Traceroute might allow remote attackers to execute arbitrary commands.
Background ========= PEAR Net_Traceroute is an OS independent wrapper class for executing traceroute calls from PHP.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 dev-php/PEAR-Net_Traceroute < 0.21.2 >= 0.21.2
========== Pasquale Imperato reported that the $host parameter to the traceroute() function in Traceroute.php is not properly sanitized before being...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround