İçeriğe atla
Noroxi

zsh kayıtları

zsh üreticisine ait 13 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
0
Düzeltme kaydı olan
%100
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

13 kayıt
  • CVE-2017-18206
    40Planlayın

    In utils.c in zsh before 5.4, symlink expansion had a buffer overflow.

    KritikCVSS 9,8İstismar yokEPSS %3

    zsh · zsh27 Şub 2018

  • CVE-2018-13259
    40Planlayın

    An issue was discovered in zsh before 5.6.

    KritikCVSS 9,8İstismar yokEPSS %3

    zsh · zsh5 Eyl 2018

  • CVE-2014-10071
    40Planlayın

    In exec.c in zsh before 5.0.7, there is a buffer overflow for very long fds in the ">& fd" syntax.

    KritikCVSS 9,8İstismar yokEPSS %3

    zsh · zsh27 Şub 2018

  • CVE-2018-7548
    40Planlayın

    In subst.c in zsh through 5.4.2, there is a NULL pointer dereference when using ${(PA)...} on an empty array result.

    KritikCVSS 9,8İstismar yokEPSS %3

    zsh · zsh27 Şub 2018

  • CVE-2018-0502
    40Planlayın

    An issue was discovered in zsh before 5.6.

    KritikCVSS 9,8İstismar yokEPSS %2

    zsh · zsh5 Eyl 2018

  • CVE-2016-10714
    40Planlayın

    In zsh before 5.3, an off-by-one error resulted in undersized buffers that were intended to support PATH_MAX characters.

    KritikCVSS 9,8İstismar yokEPSS %2

    zsh · zsh27 Şub 2018

  • CVE-2021-45444
    32İzleyin

    In zsh before 5.8.1, an attacker can achieve code execution if they control a command output inside the prompt, as demonstrated by a %F argu

    YüksekCVSS 7,8İstismar yokEPSS %2

    zsh · zsh14 Şub 2022

  • CVE-2018-7549
    31İzleyin

    In params.c in zsh through 5.4.2, there is a crash during a copy of an empty hash table, as demonstrated by typeset -p.

    YüksekCVSS 7,5İstismar yokEPSS %3

    zsh · zsh27 Şub 2018

  • CVE-2018-1083
    31İzleyin

    Zsh before version 5.4.2-test-1 is vulnerable to a buffer overflow in the shell autocomplete functionality.

    YüksekCVSS 7,8İstismar yokEPSS %1

    zsh · zsh28 Mar 2018

  • CVE-2018-1100
    31İzleyin

    zsh through version 5.4.2 is vulnerable to a stack-based buffer overflow in the utils.c:checkmailpath function.

    YüksekCVSS 7,8İstismar yokEPSS %1

    zsh · zsh11 Nis 2018

  • CVE-2019-20044
    31İzleyin

    In Zsh before 5.8, attackers able to execute commands can regain privileges dropped by the --no-PRIVILEGED option.

    YüksekCVSS 7,8İstismar yokEPSS %0

    zsh · zsh24 Şub 2020

  • CVE-2018-1071
    22İzleyin

    zsh through version 5.4.2 is vulnerable to a stack-based buffer overflow in the exec.c:hashcmd() function.

    OrtaCVSS 5,5İstismar yokEPSS %0

    zsh · zsh9 Mar 2018

  • CVE-2007-6209
    18İzleyin

    Util/difflog.pl in zsh 4.3.4 allows local users to overwrite arbitrary files via a symlink attack on temporary files.

    OrtaCVSS 4,6İstismar yokEPSS %0

    zsh · zsh3 Ara 2007