CVE-2022-29583

service_windows.go in the kardianos service package for Go omits quoting that is sometimes needed for execution of a Windows service executable from the intended directory. NOTE: this finding could not be reproduced by its original reporter or by others.
References
Link Resource
https://github.com/kardianos/service/pull/290 Patch Third Party Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:a:service_project:service:-:*:*:*:*:go:*:*

History

07 Nov 2023, 03:46

Type Values Removed Values Added
Summary ** DISPUTED ** service_windows.go in the kardianos service package for Go omits quoting that is sometimes needed for execution of a Windows service executable from the intended directory. NOTE: this finding could not be reproduced by its original reporter or by others. service_windows.go in the kardianos service package for Go omits quoting that is sometimes needed for execution of a Windows service executable from the intended directory. NOTE: this finding could not be reproduced by its original reporter or by others.

24 May 2023, 15:15

Type Values Removed Values Added
Summary service_windows.go in the kardianos service package for Go omits quoting that is sometimes needed for execution of a Windows service executable from the intended directory. ** DISPUTED ** service_windows.go in the kardianos service package for Go omits quoting that is sometimes needed for execution of a Windows service executable from the intended directory. NOTE: this finding could not be reproduced by its original reporter or by others.

03 May 2022, 19:44

Type Values Removed Values Added
References (MISC) https://github.com/kardianos/service/pull/290 - (MISC) https://github.com/kardianos/service/pull/290 - Patch, Third Party Advisory
CPE cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:a:service_project:service:-:*:*:*:*:go:*:*
First Time Microsoft windows
Microsoft
Service Project
Service Project service
CWE CWE-426
CVSS v2 : unknown
v3 : unknown
v2 : 4.6
v3 : 7.8

22 Apr 2022, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-04-22 16:15

Updated : 2024-04-11 01:15


NVD link : CVE-2022-29583

Mitre link : CVE-2022-29583

CVE.ORG link : CVE-2022-29583


JSON object : View

Products Affected

microsoft

  • windows

service_project

  • service
CWE
CWE-426

Untrusted Search Path