CVE-2012-4548
published 2012-11-11CVE-2012-4548: Argument injection vulnerability in syntax-highlighting.sh in cgit 9.0.3 and earlier allows remote authenticated users with permissions to add files to execute…
PriorityP336medium6CVSS 2.0
AVNACMAuSCPIPAP
EPSS
2.75%
84.6th percentile
Argument injection vulnerability in syntax-highlighting.sh in cgit 9.0.3 and earlier allows remote authenticated users with permissions to add files to execute arbitrary commands via the --plug-in argument to the highlight command.
Affected
29 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | cgit | — | — |
| lars_hjemli | cgit | <= 0.9.0.3 | — |
| lars_hjemli | cgit | — | — |
| lars_hjemli | cgit | — | — |
| lars_hjemli | cgit | — | — |
| lars_hjemli | cgit | — | — |
| lars_hjemli | cgit | — | — |
| lars_hjemli | cgit | — | — |
| lars_hjemli | cgit | — | — |
| lars_hjemli | cgit | — | — |
| lars_hjemli | cgit | — | — |
| lars_hjemli | cgit | — | — |
| lars_hjemli | cgit | — | — |
| lars_hjemli | cgit | — | — |
| lars_hjemli | cgit | — | — |
| lars_hjemli | cgit | — | — |
| lars_hjemli | cgit | — | — |
| lars_hjemli | cgit | — | — |
| lars_hjemli | cgit | — | — |
| lars_hjemli | cgit | — | — |
| lars_hjemli | cgit | — | — |
| lars_hjemli | cgit | — | — |
| lars_hjemli | cgit | — | — |
| lars_hjemli | cgit | — | — |
| lars_hjemli | cgit | — | — |
CVSS provenance
nvdv2.06.0MEDIUMAV:N/AC:M/Au:S/C:P/I:P/A:P
vendor_debian6.0LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-cwx8-vfpp-jm78: Argument injection vulnerability in syntax-highlighting
ghsa_unreviewed·2022-05-17
CVE-2012-4548 [MEDIUM] GHSA-cwx8-vfpp-jm78: Argument injection vulnerability in syntax-highlighting
Argument injection vulnerability in syntax-highlighting.sh in cgit 9.0.3 and earlier allows remote authenticated users with permissions to add files to execute arbitrary commands via the --plug-in argument to the highlight command.
Debian
CVE-2012-4548: cgit - Argument injection vulnerability in syntax-highlighting.sh in cgit 9.0.3 and ear...
vendor_debian·2012·CVSS 6.0
CVE-2012-4548 [MEDIUM] CVE-2012-4548: cgit - Argument injection vulnerability in syntax-highlighting.sh in cgit 9.0.3 and ear...
Argument injection vulnerability in syntax-highlighting.sh in cgit 9.0.3 and earlier allows remote authenticated users with permissions to add files to execute arbitrary commands via the --plug-in argument to the highlight command.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2012-4548 cgit: syntax-highlighting.sh command injection
bugzilla·2012-10-28·CVSS 6.0
CVE-2012-4548 [MEDIUM] CVE-2012-4548 cgit: syntax-highlighting.sh command injection
CVE-2012-4548 cgit: syntax-highlighting.sh command injection
syntax-highlighting.sh: Fix command injection.
By not quoting the argument, an attacker with the ability to add files to the
repository could pass arbitrary arguments to the highlight command, in
particular, the --plug-in argument which can lead to arbitrary command
execution.
This patch adds simple argument quoting.
External references:
http://git.zx2c4.com/cgit/commit/?id=7ea35f9f8ecf61ab42be9947aae1176ab6e089bd
Discussion:
Created attachment 634444
cgit-CVE-2012-4548.patch
---
Created cgit tracking bugs for this issue
Affects: fedora-all [bug 870714]
---
Created cgit tracking bugs for this issue
Affects: epel-all [bug 870715]
Bugzilla
CVE-2012-4548 cgit: syntax-highlighting.sh command injection [fedora-all]
bugzilla·2012-10-28·CVSS 6.0
CVE-2012-4548 [MEDIUM] CVE-2012-4548 cgit: syntax-highlighting.sh command injection [fedora-all]
CVE-2012-4548 cgit: syntax-highlighting.sh command injection [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
Please note: this issue affects
Bugzilla
CVE-2012-4548 cgit: syntax-highlighting.sh command injection [epel-all]
bugzilla·2012-10-28·CVSS 6.0
CVE-2012-4548 [MEDIUM] CVE-2012-4548 cgit: syntax-highlighting.sh command injection [epel-all]
CVE-2012-4548 cgit: syntax-highlighting.sh command injection [epel-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora EPEL.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
Please note: this issue affe
http://git.zx2c4.com/cgit/commit/?id=7ea35f9f8ecf61ab42be9947aae1176ab6e089bdhttp://lists.opensuse.org/opensuse-security-announce/2012-10/msg00021.htmlhttp://lists.opensuse.org/opensuse-security-announce/2012-10/msg00022.htmlhttp://lists.opensuse.org/opensuse-security-announce/2012-11/msg00003.htmlhttp://lists.opensuse.org/opensuse-security-announce/2012-11/msg00004.htmlhttp://secunia.com/advisories/50734http://secunia.com/advisories/51167http://secunia.com/advisories/51222http://www.openwall.com/lists/oss-security/2012/10/28/1http://www.openwall.com/lists/oss-security/2012/10/28/2http://www.securityfocus.com/bid/56315https://bugzilla.redhat.com/show_bug.cgi?id=870713https://exchange.xforce.ibmcloud.com/vulnerabilities/79665http://git.zx2c4.com/cgit/commit/?id=7ea35f9f8ecf61ab42be9947aae1176ab6e089bdhttp://lists.opensuse.org/opensuse-security-announce/2012-10/msg00021.htmlhttp://lists.opensuse.org/opensuse-security-announce/2012-10/msg00022.htmlhttp://lists.opensuse.org/opensuse-security-announce/2012-11/msg00003.htmlhttp://lists.opensuse.org/opensuse-security-announce/2012-11/msg00004.htmlhttp://secunia.com/advisories/50734http://secunia.com/advisories/51167http://secunia.com/advisories/51222http://www.openwall.com/lists/oss-security/2012/10/28/1http://www.openwall.com/lists/oss-security/2012/10/28/2http://www.securityfocus.com/bid/56315https://bugzilla.redhat.com/show_bug.cgi?id=870713https://exchange.xforce.ibmcloud.com/vulnerabilities/79665
2012-11-11
Published