|
|
Log in / Subscribe / Register

gedit: arbitrary code execution via Python scripts

Package(s):gedit CVE #(s):CVE-2009-0314
Created:February 16, 2009 Updated:March 31, 2009
Description: From the Mandriva advisory: Python has a variable called sys.path that contains all paths where Python loads modules by using import scripting procedure. A wrong handling of that variable enables local attackers to execute arbitrary code via Python scripting in the current gedit working directory
Alerts:
Gentoo 200903-41 gedit 2009-03-30
Mandriva MDVSA-2009:039 gedit 2008-02-16

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds