"Urgent Fix Released for Critical Rust Vulnerability Exposing Windows Systems to Command Injection Attacks"

1 min read
Source: The Hacker News
"Urgent Fix Released for Critical Rust Vulnerability Exposing Windows Systems to Command Injection Attacks"
Photo: The Hacker News
TL;DR Summary

A critical vulnerability in the Rust standard library, known as BatBadBut and tracked as CVE-2024-24576, exposes Windows systems to command injection attacks when batch files are invoked with untrusted arguments. The flaw impacts all versions of Rust before 1.77.2 and has a maximum severity score. Security researcher RyotaK discovered and reported the bug, advising caution when executing commands on Windows and recommending moving batch files to a directory not included in the PATH environment variable to prevent unexpected execution.

Share this article

Reading Insights

Total Reads

0

Unique Readers

1

Time Saved

1 min

vs 2 min read

Condensed

72%

28479 words

Want the full story? Read the original article

Read on The Hacker News