CVE-2005-0758
zgrep in gzip before 1.3.5 does not properly sanitize arguments, which allows local users to execute arbitrary commands via filenames that are injected into a sed script.
Date published : 2005-05-13
http://lists.apple.com/archives/security-announce//2007/Jul/msg00004.html