cbcvebase.
CVE-2024-32487
published 2024-04-13

CVE-2024-32487: less through 653 allows OS command execution via a newline character in the name of a file, because quoting is mishandled in filename.c. Exploitation typically…

PriorityP342high8.6CVSS 3.1
AVLACLPRNUIRSCCHIHAH
EPSS
0.63%
45.9th percentile
less through 653 allows OS command execution via a newline character in the name of a file, because quoting is mishandled in filename.c. Exploitation typically requires use with attacker-controlled file names, such as the files extracted from an untrusted archive. Exploitation also requires the LESSOPEN environment variable, but this is set by default in many common cases.

Affected

13 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debianless< less 590-2.1~deb12u2 (bookworm)less 590-2.1~deb12u2 (bookworm)
gnuless>= 0 < 551-2+deb11u2551-2+deb11u2
gnuless>= 0 < 590-2.1~deb12u2590-2.1~deb12u2
gnuless>= 0 < 590-2.1590-2.1
gnuless>= 0 < 590-2.1590-2.1
greenwoodsoftwareless<= 653
msrcazl3_less_643-2_on_azure_linux_3.0
msrcazure_linux_3.0_arm
msrcazure_linux_3.0_x64
msrccbl2_less_590-4_on_cbl_mariner_2.0
msrccbl_mariner_2.0_arm
msrccbl_mariner_2.0_x64

CVSS provenance

nvdv3.18.6HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
osv8.6HIGH
vendor_debian8.6HIGH
vendor_msrc8.6HIGH
vendor_redhat8.6HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.