fcheck prior to 2.57.59 calls the file signature checking program insecurely, which can allow a local user to run arbitrary commands via a file name that contains shell metacharacters.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Fcheck | Michael_a._gumienny | * | 2.57.59 (including) |