fcheck prior to 2.57.59 calls the file signature checking program insecurely, which can allow a local user to run arbitrary commands via a file name that contains shell metacharacters.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Fcheck | Michael_a._gumienny | * | 2.57.59 (including) |