Skip to content

Conversation

1337kid
Copy link
Contributor

@1337kid 1337kid commented Mar 14, 2024

This a patch for command injection vulnerabilities in check_connection(), drop_data_received_cb() and Service.remove() using "shlex" module.

More information about the vulnerability can be found here (#42)

@mtwebster mtwebster merged commit 4b9da20 into linuxmint:master May 8, 2024
@clefebvre
Copy link
Member

I had to revert part of this since it was breaking functionality.

03ce507

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants