CVE-2020-35459

NameCVE-2020-35459
DescriptionAn issue was discovered in ClusterLabs crmsh through 4.2.1. Local attackers able to call "crm history" (when "crm" is run) were able to execute commands via shell code injection to the crm history commandline, potentially allowing escalation of privileges.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
ReferencesDLA-2533-1
Debian Bugs985376

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
crmsh (PTS)stretch (security), stretch (lts), stretch2.3.2-4+deb9u1fixed
buster4.0.0~git20190108.3d56538-3+deb10u1fixed
bullseye4.2.1-2fixed
bookworm4.4.1-1+deb12u1fixed
sid, trixie4.6.0-3fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
crmshsourcestretch2.3.2-4+deb9u1DLA-2533-1
crmshsourcebuster4.0.0~git20190108.3d56538-3+deb10u1
crmshsource(unstable)4.2.1-2985376

Notes

https://www.openwall.com/lists/oss-security/2021/01/12/3

Search for package or bug name: Reporting problems