← Back

CVE-2008-5718

nvd nist
Published: Dec 26, 2008Modified: Apr 23, 2026

JSON object

Loading...
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD

Description

The papd daemon in Netatalk before 2.0.4-beta2, when using certain variables in a pipe command for the print file, allows remote attackers to execute arbitrary commands via shell metacharacters in a print request, as demonstrated using a crafted Title.

Affected (32)

Products: Netatalk: Netatalk
1 product
Netatalk
Configuration A
32 vulnerable
Vulnerable SoftwareAffected Versions
Netatalk
Up to 2.0.3
Version 1.4.99-0.20000927
Version 1.4.99-0.20001108
Version 1.5.0
Version 1.5.1.1
Version 1.5.1
Version 1.5.2
Version 1.5.3.1
Version 1.5.5
Version 1.5 rc1
Version 1.5 rc2
Version 1.5pre3
Version 1.5pre4
Version 1.5pre5
Version 1.5pre6
Version 1.5pre7
Version 1.5pre8
Version 1.6.0
Version 1.6.1
Version 1.6.2
Version 1.6.3
Version 1.6.4
Version 1.6.4a
Version 2.0.0
Version 2.0.1
Version 2.0.2
Version 2.0 alpha1
Version 2.0 alpha2
Version 2.0 beta1
Version 2.0 beta2
Version 2.0 rc1
Version 2.0 rc2

References (22)

Source: cve@mitre.org
Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Patch

Timeline

No history available yet.