Vulnerability CVE-2023-42658


Published: 2023-10-31

Description:
Archive, check and export commands in Chef InSpec
prior to 4.56.58 and 5.22.29 allow local command execution via maliciously
crafted profile.



 References:
https://docs.chef.io/inspec/cli/
https://docs.chef.io/release_notes_inspec/
https://community.progress.com/s/article/Product-Alert-Bulletin-October-2023-CHEF-Inspec-CVE-2023-42658

Copyright 2026, cxsecurity.com

 

Back to Top