FreeBSD : gnomevfs -- unsafe URI handling (7884d56f-f7a1-11d8-9837-000c41e2cdad)
High Nessus Plugin ID 37096
The remote FreeBSD host is missing one or more security-related updates.
Alexander Larsson reports that some versions of gnome-vfs and MidnightCommander contain a number of `extfs' scripts that do not properly validate user input. If an attacker can cause her victim to process a specially crafted URI, arbitrary commands can be executed with the privileges of the victim.