Overview
A lack of input validation in a supplemental shell script included with some Mozilla browsers may allow a remote, unauthenticated attacker to execute arbitrary commands.
Description
The Linux versions of the Mozilla Firefox and Mozilla Suite web browsers include a wrapper shell script for invoking the browser on URIs supplied by external applications. This shell script fails to sanitize shell metacharacters from the supplied URI parameters before using them to construct a shell command. By sending a specially crafted URI to a user of an application configured to invoke this shell script, a remote, unauthenticated attacker may be able to execute arbitrary commands on the vulnerable system. This issue only affects Linux systems using the supplied firefox or mozilla shell scripts or other Unix-like systems specifically configured to use these scripts. |
Impact
A remote, unauthenticated attacker may be able to execute arbitrary commands with the privileges of the user of the application which invoked the vulnerable shell script. |
Solution
Upgrade |
Workarounds
|
Vendor Information
CVSS Metrics
Group | Score | Vector |
---|---|---|
Base | ||
Temporal | ||
Environmental |
References
Acknowledgements
Thanks to Peter Zelezny for reporting this vulnerability.
This document was written by Chad R Dougherty.
Other Information
CVE IDs: | CVE-2005-2968 |
Severity Metric: | 12.15 |
Date Public: | 2005-09-20 |
Date First Published: | 2005-09-22 |
Date Last Updated: | 2005-12-22 20:05 UTC |
Document Revision: | 22 |