Candidate: CVE-2015-0853 PublicDate: 2017-09-06 21:29:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0853 Description: svn-workbench 1.6.2 and earlier on a system with xeyes installed allows local users to execute arbitrary commands by using the "Command Shell" menu item while in the directory trunk/$(xeyes). Ubuntu-Description: Notes: Bugs: http://bugs.debian.org/798863 https://launchpad.net/bugs/1495268 Priority: low Discovered-by: Luke Faraone Assigned-to: CVSS: nvd: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H [8.8 HIGH] nvd: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H [8.8 HIGH] Patches_svn-workbench: upstream_svn-workbench: released (1.7.0-1) precise_svn-workbench: ignored (reached end-of-life) precise/esm_svn-workbench: DNE (precise was needed) trusty_svn-workbench: ignored (reached end-of-life) trusty/esm_svn-workbench: DNE (trusty was needed) vivid_svn-workbench: ignored (reached end-of-life) vivid/stable-phone-overlay_svn-workbench: DNE vivid/ubuntu-core_svn-workbench: DNE wily_svn-workbench: ignored (reached end-of-life) xenial_svn-workbench: not-affected (1.7.0-2) yakkety_svn-workbench: ignored (reached end-of-life) zesty_svn-workbench: ignored (reached end-of-life) artful_svn-workbench: ignored (reached end-of-life) bionic_svn-workbench: not-affected (1.7.0-2) cosmic_svn-workbench: not-affected (1.7.0-2) disco_svn-workbench: not-affected (1.7.0-2) devel_svn-workbench: not-affected (1.7.0-2)