Developer Tools & Libraries

Remote Code Execution

Command Injection in GitHub repository Nuitka/Nuitka prior to 0.9

Command Injection in GitHub repository Nuitka prior to 0.9.

8.4
/ 10
High
CVSS v3.1
ADVISORY ID
PS54
PUBLISHED
2022-10-05
CVE IDs
CVE-2022-2054
VENDORS
Nuitka
PUBLIC EXPLOIT
PoC public
CWE
CWE-94
PRODUCT
Nuitka
CVSS VECTOR
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Abstract blurred background with dark tones and smooth gradient waves of blue, purple, and orange hues.
Summary

Overview

Command Injection in GitHub repository Nuitka prior to 0.9.

The main() function uses the eval() function which can lead to contextual code execution, allowing an attacker to gain access to a system and execute commands with the privileges of the running program by setting NUITKA_PYTHONPATH, NUITKA_NAMESPACES, or NUITKA_PTH_IMPORTED to a malicious payload string. This can lead to backdoors, reverse shells or reading/writing to privileged files.

Vulnerability details

Vulnerability details

CVE-2022-2054
CWE-94
High | 8.4

Command Injection in GitHub repository Nuitka prior to 0.9. The main() function uses the eval() function which can lead to contextual code execution, allowing an attacker to gain access to a system and execute commands with the privileges of the running

Auth:
None (local access)
Impact:
Sensitive data disclosure, arbitrary data or code modification, denial of service
DISCLOSURE

Disclosure timeline

2022-06-04 Reported On

2022-06-05 Made Public On

2022-06-27 Fixed On

Credits

Debjeet Banerjee