HomeFreeBSD

Document ksh93 CVE-2019-14868: certain environment variables interpreted

Description

Document ksh93 CVE-2019-14868: certain environment variables interpreted
as arithmetic expressions on startup, leading to code injection.

Reported by: Siteshwar Vashisht <svashisht@redhat.com>
MFH: 2020Q1
Security: CVE-2019-14868

		https://bugzilla.redhat.com/show_bug.cgi?id=1757324
		https://access.redhat.com/security/cve/CVE-2019-14868

Details

Provenance
cyAuthored on
Parents
rP525500: Update to the latest cfengine commits on github.
Branches
Unknown
Tags
Unknown