Vulnerabilidades em zsh
3 resultadosAnálise Vexday
O zsh apresenta um perfil de risco baixo com apenas 3 vulnerabilidades catalogadas e nenhuma sob ataque ativo ou crítica. A fraqueza dominante (CWE-120 - Buffer Copy without Checking Size of Input) sugere problemas históricos de validação de entrada, mas sem exploração conhecida no momento e nenhuma publicação recente.
CVE-2018-1083—Zsh before version 5.4.2-test-1 is vulnerable to a buffer overflow in the shell autocomplete functionality. A local unprivileged user can crEPSS 0.6%CVE-2018-1100—zsh through version 5.4.2 is vulnerable to a stack-based buffer overflow in the utils.c:checkmailpath function. A local attacker could exploEPSS 0.5%CVE-2018-1071—zsh through version 5.4.2 is vulnerable to a stack-based buffer overflow in the exec.c:hashcmd() function. A local attacker could exploit thEPSS 0.4%