• Home
  • Features
  • Pricing
  • Docs
  • Announcements
  • Sign In

akrennmair / newsbeuter / 959 / 1
60%
master: 60%

Build:
DEFAULT BRANCH: master
Ran 17 Aug 2017 08:57PM UTC
Files 130
Run time 9s
Badge
Embed ▾
README BADGES
x

If you need to use a raster PNG badge, change the '.svg' to '.png' in the link

Markdown

Textile

RDoc

HTML

Rst

17 Aug 2017 06:06PM UTC coverage: 35.488% (-0.03%) from 35.514%
COMPILER=g++-4.9 GCOV=/usr/bin/gcov-4.9

push

travis-ci

Minoru
Sanitize inputs to bookmark-cmd (#591)

Newsbeuter didn't properly shell-escape the arguments passed to
bookmarking command, which allows a remote attacker to perform remote
code execution by crafting an RSS item whose title and/or URL contain
something interpretable by the shell (most notably subshell
invocations.)

This has been reported by Jeriko One <jeriko.one@gmx.us>, complete with
PoC and a patch.

This vulnerability was assigned CVE-2017-12904.

4090 of 11525 relevant lines covered (35.49%)

95.72 hits per line

Source Files on job 959.1 (COMPILER=g++-4.9 GCOV=/usr/bin/gcov-4.9)
  • Tree
  • List 0
  • Changed 4
  • Source Changed 1
  • Coverage Changed 4
Coverage ∆ File Lines Relevant Covered Missed Hits/Line
  • Back to Build 959
  • Travis Job 959.1
  • 96e9506a on github
  • Prev Job for COMPILER=g++-4.9 GCOV=/usr/bin/gcov-4.9 on master (#958.1)
  • Next Job for COMPILER=g++-4.9 GCOV=/usr/bin/gcov-4.9 on master (#967.1)
STATUS · Troubleshooting · Open an Issue · Sales · Support · CAREERS · ENTERPRISE · START FREE · SCHEDULE DEMO
ANNOUNCEMENTS · TWITTER · TOS & SLA · Supported CI Services · What's a CI service? · Automated Testing

© 2026 Coveralls, Inc