less through 653 allows OS command execution via a newline character in the name of a file, because quoting is mishandled in filename.c. Exploitation typically requires use with attacker-controlled file names, such as the files extracted from an untrusted archive. Exploitation also requires the LESSOPEN environment variable, but this is set by default in many common cases.
2024-04-13T15:15:52.683
2025-06-17T20:58:12.907
Analyzed
CVSSv3.1: 8.6 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | greenwoodsoftware | less | ≤ 653 | Yes |
Operating System | debian | debian_linux | 10.0 | Yes |
Operating System | netapp | bootstrap_os | - | Yes |
Hardware | netapp | hci_compute_node | - | No |
Application | netapp | hci_storage_nodes | - | Yes |
Application | netapp | solidfire | - | Yes |