VYPR
High severity7.8NVD Advisory· Published Dec 20, 2022· Updated Jun 17, 2026

CVE-2022-4515

CVE-2022-4515

Description

A flaw was found in Exuberant Ctags in the way it handles the "-o" option. This option specifies the tag filename. A crafted tag filename specified in the command line or in the configuration file results in arbitrary command execution because the externalSortTags() in sort.c calls the system(3) function in an unsafe way.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

30

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.