LWN.net Logo

dia: arbitrary code execution

Package(s):dia CVE #(s):
Created:January 27, 2009 Updated:January 28, 2009
Description: From the Fedora advisory: Filter out untrusted python modules search path to remove the possibility to run arbitrary code on the user's system if there is a python file in dia's working directory named the same as one that dia's python scripts try to import.
Alerts:
Fedora FEDORA-2009-1057 2009-01-27
Fedora FEDORA-2009-0943 2009-01-27

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds