CVE-2020-5253
3.9LOWNetHack before version 3.6.0 allowed malicious use of escaping of characters in the configuration file (usually .nethackrc) which could be exploited. This bug is patched in NetHack 3.6.0.
Опубликовано: 3/10/2020Обновлено: 11/21/2024
Описание
NetHack before version 3.6.0 allowed malicious use of escaping of characters in the configuration file (usually .nethackrc) which could be exploited. This bug is patched in NetHack 3.6.0.
ИИ-АнализНа базе ИИ
Затронутые продукты
nethacknethack
Ссылки
- https://github.com/NetHack/NetHack/commits/612755bfb5c412079795c68ba392df5d93874ed8PatchThird Party Advisory
- https://github.com/NetHack/NetHack/security/advisories/GHSA-2c7p-3fj4-223mThird Party Advisory
- https://github.com/NetHack/NetHack/commits/612755bfb5c412079795c68ba392df5d93874ed8PatchThird Party Advisory
- https://github.com/NetHack/NetHack/security/advisories/GHSA-2c7p-3fj4-223mThird Party Advisory