LWN.net Logo

python-virtualenv: symlink attack

Package(s):python-virtualenv CVE #(s):CVE-2011-4617
Created:January 6, 2012 Updated:June 25, 2012
Description: From the CVE entry:

virtualenv.py in virtualenv before 1.5 allows local users to overwrite arbitrary files via a symlink attack on a certain file in /tmp/.

Alerts:
Fedora FEDORA-2011-17289 2011-12-22
Fedora FEDORA-2011-17341 2011-12-22
Gentoo 201206-17 2012-06-22

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds