Back to bug 2127348

Who When What Removed Added
Avinash Hanwate 2022-09-16 05:03:41 UTC Depends On 2127349
Avinash Hanwate 2022-09-16 05:04:14 UTC CC aileenc, balejosg, chazlett, epel-packagers-sig, eric.wittmann, janstey, jochrist, jpavlik, jshaughn, jwendell, ngompa13, ovanders, pantinor, peholase, rcernich
Avinash Hanwate 2022-09-16 05:05:35 UTC Depends On 2127351, 2127350
Avinash Hanwate 2022-09-16 05:06:21 UTC Blocks 2111126
Avinash Hanwate 2022-09-16 05:08:33 UTC Doc Text A flaw was found in the thenify package. The name argument provided to the package can be controlled by users without any sanitization, and this is provided to the eval function without any sanitization which leads to Arbitrary Code Execution.
RaTasha Tillery-Smith 2022-09-16 19:42:14 UTC Doc Text A flaw was found in the thenify package. The name argument provided to the package can be controlled by users without any sanitization, and this is provided to the eval function without any sanitization which leads to Arbitrary Code Execution. A flaw was found in the thenify package. Users can control the name argument provided to the package without any sanitization, and this is provided to the eval function without any sanitization, which leads to arbitrary code execution.
Avinash Hanwate 2022-09-21 05:43:01 UTC CC jburrell, vkumar
Red Hat Bugzilla 2023-02-03 23:11:32 UTC CC ovanders
Carl George 🤠 2023-06-05 21:32:16 UTC Depends On 2212563
Red Hat Bugzilla 2023-07-07 08:31:09 UTC Assignee security-response-team nobody
Red Hat Bugzilla 2023-07-21 22:26:24 UTC CC jpavlik

Back to bug 2127348