XRootD: Remote code execution A vulnerability was discovered in XRootD which could lead to the remote execution of code. xrootd 2019-03-14 2019-03-14 638420 remote 4.8.3 4.8.3

A project that aims at giving high performance, scalable, and fault tolerant access to data repositories of many kinds.

A shell command injection was discovered in XRootD.

A remote attacker could execute arbitrary code.

There is no known workaround at this time.

All XRootD users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=net-libs/xrootd-4.8.3"
CVE-2017-1000215 BlueKnight b-man