Candidate: CVE-2009-5043 PublicDate: 2019-10-31 16:15:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-5043 Description: burn allows file names to escape via mishandled quotation marks Ubuntu-Description: Notes: Bugs: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=542329 Priority: low Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H [9.8 CRITICAL] Patches_burn: upstream_burn: released (0.4.5-1) hardy_burn: ignored (reached end-of-life) lucid_burn: not-affected (0.4.5-1ubuntu1) maverick_burn: not-affected natty_burn: not-affected oneiric_burn: not-affected devel_burn: not-affected