LWN.net Logo

clearsilver: arbitrary code execution

Package(s):clearsilver CVE #(s):CVE-2011-4357
Created:December 1, 2011 Updated:December 23, 2011
Description: From the Debian advisory:

Leo Iannacone and Colin Watson discovered a format string vulnerability in the Python bindings for the Clearsilver HTML template system, which may lead to denial of service or the execution of arbitrary code.

Alerts:
Fedora FEDORA-2011-17040 2011-12-12
Fedora FEDORA-2011-17042 2011-12-12
Debian DSA-2355-1 2011-11-30

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds