CVE-2017-1000203

NameCVE-2017-1000203
DescriptionROOT version 6.9.03 and below is vulnerable to an authenticated shell metacharacter injection in the rootd daemon resulting in remote code execution
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
root-systemsource(unstable)(unfixed)

Notes

[jessie] - root-system <ignored> (Minor issue)
[wheezy] - root-system <ignored> (Minor issue as it's restricted to authenticated users)
https://github.com/root-project/root/commit/88ccff152604e0f1012653a596d802ff7ede3145#diff-6cd6f6c31bac70116b7ca7abdc8e517e

Search for package or bug name: Reporting problems