Audit before 2.4.4 in Linux does not sanitize escape characters in filenames.
No PoCs from references.
- https://github.com/ARPSyndicate/cvemon
- https://github.com/mglantz/acs-image-cve