CVE-2017-12904
published 2017-08-23CVE-2017-12904: Improper Neutralization of Special Elements used in an OS Command in bookmarking function of Newsbeuter versions 0.7 through 2.9 allows remote attackers to…
PriorityP354high8.8CVSS 3.0
AVNACLPRNUIRSUCHIHAH
EPSS
6.40%
93.0th percentile
Improper Neutralization of Special Elements used in an OS Command in bookmarking function of Newsbeuter versions 0.7 through 2.9 allows remote attackers to perform user-assisted code execution by crafting an RSS item that includes shell code in its title and/or URL.
Affected
38 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| newsbeuter | newsbeuter | — | — |
| newsbeuter | newsbeuter | — | — |
| newsbeuter | newsbeuter | — | — |
| newsbeuter | newsbeuter | — | — |
| newsbeuter | newsbeuter | — | — |
| newsbeuter | newsbeuter | — | — |
| newsbeuter | newsbeuter | — | — |
| newsbeuter | newsbeuter | — | — |
| newsbeuter | newsbeuter | — | — |
| newsbeuter | newsbeuter | — | — |
| newsbeuter | newsbeuter | — | — |
| newsbeuter | newsbeuter | — | — |
| newsbeuter | newsbeuter | — | — |
| newsbeuter | newsbeuter | — | — |
| newsbeuter | newsbeuter | — | — |
| newsbeuter | newsbeuter | — | — |
| newsbeuter | newsbeuter | — | — |
| newsbeuter | newsbeuter | — | — |
| newsbeuter | newsbeuter | — | — |
| newsbeuter | newsbeuter | — | — |
| newsbeuter | newsbeuter | — | — |
| newsbeuter | newsbeuter | — | — |
CVSS provenance
nvdv3.08.8HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
osv8.8HIGH
vendor_ubuntu8.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Newsbeuter vulnerabilities
vendor_ubuntu·2020-10-15·CVSS 8.8
CVE-2017-12904 [HIGH] Newsbeuter vulnerabilities
Title: Newsbeuter vulnerabilities
Summary: Newsbeuter could be made to crash or run programs as your login if it
opened a malicious file.
It was discovered that Newsbeuter didn't handle the command line input
properly. An remote attacker could use it to ran remote code by crafting
a special input file. (CVE-2017-12904)
It was discovered that Newsbeuter didn't handle metacharacters in its
filename properly. An remote attacker could use it to ran remote code by
crafting a special filename. (CVE-2017-14500)
Instructions: In general, a standard system update will make all the necessary changes.
GHSA
GHSA-rc2j-xvrx-6gqj: Improper Neutralization of Special Elements used in an OS Command in bookmarking function of Newsbeuter versions 0
ghsa_unreviewed·2022-05-13
CVE-2017-12904 [HIGH] CWE-943 GHSA-rc2j-xvrx-6gqj: Improper Neutralization of Special Elements used in an OS Command in bookmarking function of Newsbeuter versions 0
Improper Neutralization of Special Elements used in an OS Command in bookmarking function of Newsbeuter versions 0.7 through 2.9 allows remote attackers to perform user-assisted code execution by crafting an RSS item that includes shell code in its title and/or URL.
GHSA
GHSA-372j-rcwj-w67h: Improper Neutralization of Special Elements used in an OS Command in the podcast playback function of Podbeuter in Newsbeuter 0
ghsa_unreviewed·2022-05-13·CVSS 8.8
CVE-2017-14500 [HIGH] CWE-78 GHSA-372j-rcwj-w67h: Improper Neutralization of Special Elements used in an OS Command in the podcast playback function of Podbeuter in Newsbeuter 0
Improper Neutralization of Special Elements used in an OS Command in the podcast playback function of Podbeuter in Newsbeuter 0.3 through 2.9 allows remote attackers to perform user-assisted code execution by crafting an RSS item with a media enclosure (i.e., a podcast file) that includes shell metacharacters in its filename, related to pb_controller.cpp and queueloader.cpp, a different vulnerability than CVE-2017-12904.
OSV
newsbeuter vulnerabilities
osv·2020-10-15·CVSS 8.8
CVE-2017-12904 [HIGH] newsbeuter vulnerabilities
newsbeuter vulnerabilities
It was discovered that Newsbeuter didn't handle the command line input
properly. An remote attacker could use it to ran remote code by crafting
a special input file. (CVE-2017-12904)
It was discovered that Newsbeuter didn't handle metacharacters in its
filename properly. An remote attacker could use it to ran remote code by
crafting a special filename. (CVE-2017-14500)
OSV
CVE-2017-14500: Improper Neutralization of Special Elements used in an OS Command in the podcast playback function of Podbeuter in Newsbeuter 0
osv·2017-09-17·CVSS 8.8
CVE-2017-14500 [HIGH] CVE-2017-14500: Improper Neutralization of Special Elements used in an OS Command in the podcast playback function of Podbeuter in Newsbeuter 0
Improper Neutralization of Special Elements used in an OS Command in the podcast playback function of Podbeuter in Newsbeuter 0.3 through 2.9 allows remote attackers to perform user-assisted code execution by crafting an RSS item with a media enclosure (i.e., a podcast file) that includes shell metacharacters in its filename, related to pb_controller.cpp and queueloader.cpp, a different vulnerability than CVE-2017-12904.
OSV
CVE-2017-12904: Improper Neutralization of Special Elements used in an OS Command in bookmarking function of Newsbeuter versions 0
osv·2017-08-23·CVSS 8.8
CVE-2017-12904 [HIGH] CVE-2017-12904: Improper Neutralization of Special Elements used in an OS Command in bookmarking function of Newsbeuter versions 0
Improper Neutralization of Special Elements used in an OS Command in bookmarking function of Newsbeuter versions 0.7 through 2.9 allows remote attackers to perform user-assisted code execution by crafting an RSS item that includes shell code in its title and/or URL.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2017-14500 newsbeuter: Improper neutralization of special elements used in an OS Command
bugzilla·2017-09-20·CVSS 8.8
CVE-2017-14500 [HIGH] CVE-2017-14500 newsbeuter: Improper neutralization of special elements used in an OS Command
CVE-2017-14500 newsbeuter: Improper neutralization of special elements used in an OS Command
Improper Neutralization of Special Elements used in an OS Command in the podcast playback function of Podbeuter in Newsbeuter 0.3 through 2.9 allows remote attackers to perform user-assisted code execution by crafting an RSS item with a media enclosure (i.e., a podcast file) that includes shell metacharacters in its filename, related to pb_controller.cpp and queueloader.cpp, a different vulnerability than CVE-2017-12904.
Upstream issue:
https://github.com/akrennmair/newsbeuter/issues/598
Upstream patch:
https://github.com/akrennmair/newsbeuter/commit/26f5a4350f3ab5507bb8727051c87bb04660f333
References:
http://openwall.com/lists/oss-security/2017/09/16/1
Discussion:
Created newsbeuter track
Bugzilla
CVE-2017-12904 CVE-2017-14500 newsbeuter: various flaws [fedora-all]
bugzilla·2017-08-23·CVSS 8.8
CVE-2017-12904 [HIGH] CVE-2017-12904 CVE-2017-14500 newsbeuter: various flaws [fedora-all]
CVE-2017-12904 CVE-2017-14500 newsbeuter: various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versions of Fedor
Bugzilla
CVE-2017-12904 newsbeuter: Improper input sanitization of special elements in bookmarking function
bugzilla·2017-08-23·CVSS 8.8
CVE-2017-12904 [HIGH] CVE-2017-12904 newsbeuter: Improper input sanitization of special elements in bookmarking function
CVE-2017-12904 newsbeuter: Improper input sanitization of special elements in bookmarking function
Improper Neutralization of Special Elements used in an OS Command in
bookmarking function of Newsbeuter versions 0.7 through 2.9 allows
remote attackers to perform user-assisted code execution by crafting
an RSS item that includes shell code in its title and/or URL.
Upstream bug:
https://github.com/akrennmair/newsbeuter/issues/591
Upstream patch:
https://github.com/akrennmair/newsbeuter/commit/96e9506ae9e252c548665152d1b8968297128307
References:
https://groups.google.com/d/topic/newsbeuter/iFqSE7Vz-DE
https://www.debian.org/security/2017/dsa-3947
Discussion:
Created newsbeuter tracking bugs for this issue:
Affects: fedora-all [bug 1484519]
---
This CVE Bugzilla entry is for commun
http://www.debian.org/security/2017/dsa-3947https://github.com/akrennmair/newsbeuter/commit/96e9506ae9e252c548665152d1b8968297128307https://github.com/akrennmair/newsbeuter/issues/591https://groups.google.com/forum/#%21topic/newsbeuter/iFqSE7Vz-DEhttps://usn.ubuntu.com/4585-1/http://www.debian.org/security/2017/dsa-3947https://github.com/akrennmair/newsbeuter/commit/96e9506ae9e252c548665152d1b8968297128307https://github.com/akrennmair/newsbeuter/issues/591https://groups.google.com/forum/#%21topic/newsbeuter/iFqSE7Vz-DEhttps://usn.ubuntu.com/4585-1/
2017-08-23
Published