OS command injection vulnerability exists in UTAU versions prior to v0.4.19. If a user of the product opens a crafted UTAU project file (.ust file), an arbitrary OS command may be executed.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://jvn.jp/en/jp/JVN71404925/ |
|
| https://utau2008.xrea.jp/ |
|
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2024-08-02T01:03:50.258Z
Reserved: 2024-05-22T05:26:04.333Z
Link: CVE-2024-28886
Updated: 2024-08-02T01:03:50.258Z
Status : Awaiting Analysis
Published: 2024-05-28T03:15:08.470
Modified: 2024-11-21T09:07:06.777
Link: CVE-2024-28886
No data.
OpenCVE Enrichment
No data.
Weaknesses