Bug#677868: /usr/bin/dictl: incorrect handling of apostrophe

2012-06-17 Thread Stepan Golosunov
Package: dict Version: 1.12.0+dfsg-5 Severity: normal File: /usr/bin/dictl Tags: patch upstream dictl (unlike dict) does not handle apostrophe correctly: % dictl won't /usr/bin/dictl: 1: eval: Syntax error: Unterminated quoted string This means arbitrary code execution if dictl is used in a

Bug#677868: /usr/bin/dictl: incorrect handling of apostrophe

2012-06-17 Thread Aleksey Cheusov
dictl (unlike dict) does not handle apostrophe correctly: % dictl won't /usr/bin/dictl: 1: eval: Syntax error: Unterminated quoted string This means arbitrary code execution if dictl is used in a script accepting untrusted data (but dictl is not suitable for such scripts anyway due to