#VU11771 Stack-based buffer overflow in zsh - CVE-2018-1100
Published: April 11, 2018 / Updated: April 12, 2018
zsh
SourceForge
Description
The vulnerability allows a local attacker to gain elevated privileges on the target system.
The vulnerability exists due to stack-based buffer overflow in the utils.c:checkmailpath function. A local attacker can trigger memory corruption and execute arbitrary code with elevated privileges.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.