PublicDate: 2008-06-06 22:32:00 UTC Candidate: CVE-2008-2575 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2575 Description: cbrPager before 0.9.17 allows user-assisted remote attackers to execute arbitrary commands via shell metacharacters in a (1) ZIP (aka .cbz) or (2) RAR (aka .cbr) archive filename. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_cbrpager: upstream_cbrpager: released (0.9.17-1) dapper_cbrpager: ignored (reached end-of-life) feisty_cbrpager: needed (reached end-of-life) gutsy_cbrpager: needed (reached end-of-life) hardy_cbrpager: ignored (reached end-of-life) intrepid_cbrpager: not-affected (0.9.18-1) jaunty_cbrpager: not-affected (0.9.18-1) karmic_cbrpager: not-affected (0.9.18-1) lucid_cbrpager: not-affected (0.9.18-1) maverick_cbrpager: not-affected (0.9.18-1) natty_cbrpager: not-affected (0.9.18-1) oneiric_cbrpager: not-affected (0.9.18-1) devel_cbrpager: not-affected (0.9.18-1)