Fedora Account System
Red Hat Associate
Red Hat Customer
An improper input sanitization flaw was found in the way feh, the versatile and fast image viewer using imlib2, escaped URLs to remote image files, to be reloaded. If a remote attacker could trick the local user into opening a specially-crafted URL (where that URL led to a valid file), it could lead to arbitrary code execution with the privileges of the user running feh. References: [1] http://bugs.gentoo.org/show_bug.cgi?id=325531 [2] http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=587205 [3] http://linuxbrit.co.uk/software/feh/ [4] https://derf.homelinux.org/projects/feh/changelog Upstream patch: [5] https://derf.homelinux.org/git/feh/patch/?id=ae56ce24b10767800b1715e7e68b41c7d3571b4c CVE Request: [6] http://www.openwall.com/lists/oss-security/2010/06/25/4 Public PoC: [7] feh --wget-timestamp 'https://derf.homelinux.org/stuff/bar`touch lol_hax`.jpg'
This issue affects the versions of the feh package, as shipped with Fedora releases of 12 and 13. Please fix.
Created feh tracking bugs for this issue Affects: fedora-all [bug 608809]
CVE identifier of CVE-2010-2246 has been assigned to this.
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependent bugs for status of those individual community products.