Archive command in Chef InSpec prior to 4.56.58 and 5.22.29 allow local command execution via maliciously crafted profile.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: ProgressSoftware

Published: 2023-10-31T14:08:03.537Z

Updated: 2024-09-06T16:00:52.926Z

Reserved: 2023-09-12T13:30:29.571Z

Link: CVE-2023-42658

cve-icon Vulnrichment

Updated: 2024-08-02T19:23:40.222Z

cve-icon NVD

Status : Analyzed

Published: 2023-10-31T15:15:09.393

Modified: 2023-11-08T17:38:06.957

Link: CVE-2023-42658

cve-icon Redhat

No data.