Vulnerabilities (CVE)

Filtered by vendor Gnu Subscribe
Filtered by product Sharutils
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2005-0990 1 Gnu 1 Sharutils 2018-10-03 2.1 LOW N/A
unshar (unshar.c) in sharutils 4.2.1 allows local users to overwrite arbitrary files via a symlink attack on the unsh.X temporary file.
CVE-2004-1772 1 Gnu 1 Sharutils 2017-10-11 4.6 MEDIUM N/A
Stack-based buffer overflow in shar in GNU sharutils 4.2.1 allows local users to execute arbitrary code via a long -o command line argument.
CVE-2004-1773 1 Gnu 1 Sharutils 2017-10-11 7.5 HIGH N/A
Multiple buffer overflows in sharutils 4.2.1 and earlier may allow attackers to execute arbitrary code via (1) long output from wc to shar, or (2) unknown vectors in unshar.
CVE-2002-0178 1 Gnu 1 Sharutils 2016-10-18 7.2 HIGH N/A
uudecode, as available in the sharutils package before 4.2.1, does not check whether the filename of the uudecoded file is a pipe or symbolic link, which could allow attackers to overwrite files or execute commands.