Chicken · Chicken · CVE-2022-45145
**Name of the Vulnerable Software and Affected Versions**
CHICKEN versions 5.x before 5.3.1
**Description**
The issue allows arbitrary OS command execution during package installation via escape characters in a .egg file. This is due to a problem in the egg-compile.scm file.
**Recommendations**
For CHICKEN versions 5.x before 5.3.1, update to version 5.3.1 or later to resolve the issue. As a temporary workaround, consider restricting the installation of packages from untrusted sources to minimize the risk of exploitation.