The slapper function in chkrootkit before 0.50 does not properly quote file paths, which allows local users to execute arbitrary code via a Trojan horse executable. NOTE: this is only a vulnerability when /tmp is not mounted with the noexec option.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.093
EPSS Ranking 92.4%