Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in openEuler A-Tune-Collector on Linux allows Command Injection. This vulnerability is associated with program files https://gitee.Com/openeuler/A-Tune-Collector/blob/master/atune_collector/plugin/monitor/process/sched.Py.

This issue affects A-Tune-Collector: from 1.1.0-3 through 1.3.0.

Advisories
Source ID Title
EUVD EUVD EUVD-2024-22260 Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in openEuler A-Tune-Collector on Linux allows Command Injection. This vulnerability is associated with program files https://gitee.Com/openeuler/A-Tune-Collector/blob/master/atune_collector/plugin/monitor/process/sched.Py. This issue affects A-Tune-Collector: from 1.1.0-3 through 1.3.0.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: openEuler

Published:

Updated: 2024-08-12T18:46:09.906Z

Reserved: 2024-02-01T12:52:39.758Z

Link: CVE-2024-24897

cve-icon Vulnrichment

Updated: 2024-08-01T23:28:13.189Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-03-25T07:15:50.350

Modified: 2024-11-21T08:59:56.357

Link: CVE-2024-24897

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses