VYPR
Unrated severityNVD Advisory· Published Feb 13, 2022· Updated Aug 4, 2024

CVE-2021-45444

CVE-2021-45444

Description

In zsh before 5.8.1, an attacker can achieve code execution if they control a command output inside the prompt, as demonstrated by a %F argument. This occurs because of recursive PROMPT_SUBST expansion.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

40

Patches

Vulnerability mechanics

References

12

News mentions

0

No linked articles in our index yet.