|
|
| |
|
| |
dia: arbitrary code execution
| Package(s): | dia |
CVE #(s): | |
| Created: | January 27, 2009 |
Updated: | January 28, 2009 |
| Description: |
From the Fedora advisory: Filter out untrusted python modules search path
to remove the possibility to run arbitrary code on the user's system if
there is a python file in dia's working directory named the same as one
that dia's python scripts try to import. |
| Alerts: |
|
( Log in to post comments)
|
|
|