CVE-2008-5718
The papd daemon in Netatalk before 2.0.4-beta2, when using certain variables in a pipe command for the print file, allows remote attackers to execute arbitrary commands via shell metacharacters in a print request, as demonstrated using a crafted Title.
Date published : 2008-12-26
http://www.securityfocus.com/bid/32925
http://sourceforge.net/project/shownotes.php?release_id=648189