Name | CVE-2021-45845 |
Description | The Path Sanity Check script of FreeCAD 0.19 is vulnerable to OS command injection, allowing an attacker to execute arbitrary commands via a crafted FCStd document. |
Source | CVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more) |
References | DSA-5229-1 |
Vulnerable and fixed packages
The table below lists information on source packages.
Source Package | Release | Version | Status |
---|
freecad (PTS) | jessie | 0.14.3702+dfsg-3 | vulnerable |
| stretch (security), stretch (lts), stretch | 0.16+dfsg2-3+deb9u1 | fixed |
| buster (security), buster, buster (lts) | 0.18~pre1+dfsg1-5+deb10u1 | fixed |
| bullseye (security), bullseye | 0.19.1+dfsg1-2+deb11u1 | fixed |
| bookworm | 0.20.2+dfsg1-4 | fixed |
| sid, trixie | 0.21.2+dfsg1-6 | fixed |
The information below is based on the following data on fixed versions.
Package | Type | Release | Fixed Version | Urgency | Origin | Debian Bugs |
---|
freecad | source | jessie | (unfixed) | end-of-life | | |
freecad | source | stretch | (not affected) | | | |
freecad | source | buster | (not affected) | | | |
freecad | source | bullseye | 0.19.1+dfsg1-2+deb11u1 | | DSA-5229-1 | |
freecad | source | (unstable) | 0.19.4+dfsg1-1 | | | |
Notes
[buster] - freecad <not-affected> (Vulnerable code introduced in 0.19)
[stretch] - freecad <not-affected> (Vulnerable code introduced in 0.19)
https://github.com/FreeCAD/FreeCAD/pull/5306
Introduced by: https://github.com/FreeCAD/FreeCAD/commit/dfc4e53f67785841b9bf106a79ccf5a6f7b0d524
Fixed by: https://github.com/FreeCAD/FreeCAD/commit/169eb655f30180b95e5923be2eb3bc4de6e02406 (master)
Fixed by: https://github.com/FreeCAD/FreeCAD/commit/a73f442f88725e08f36a3614e690bdef24c3dee3 (0.19.4)
https://tracker.freecad.org/view.php?id=4810