A vulnerability was discovered in the Keybase Client for Windows before version 5.6.0 when a user executed the "keybase git lfs-config" command on the command-line. In versions prior to 5.6.0, a malicious actor with write access to a user\'s Git repository could leverage this vulnerability to potentially execute arbitrary Windows commands on a user\'s local system.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Zoom

Published: 2021-12-14T19:26:03.894799Z

Updated: 2024-09-17T04:09:55.829Z

Reserved: 2021-06-09T00:00:00

Link: CVE-2021-34426

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-12-14T20:15:07.437

Modified: 2022-03-29T16:28:17.497

Link: CVE-2021-34426

cve-icon Redhat

No data.