CVE Vulnerabilities

CVE-2005-2966

Published: Oct 05, 2005 | Modified: Oct 03, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.1 MEDIUM
AV:N/AC:H/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

The Python SVG import plugin (diasvg_import.py) for DIA 0.94 and earlier allows user-assisted attackers to execute arbitrary commands via a crafted SVG file.

Affected Software

Name Vendor Start Version End Version
Dia Dia * 0.94 (including)
Dia Dia 0.91 (including) 0.91 (including)
Dia Dia 0.92.2 (including) 0.92.2 (including)
Dia Dia 0.93 (including) 0.93 (including)
Dia Ubuntu dapper *
Dia Ubuntu devel *
Dia Ubuntu edgy *
Dia Ubuntu feisty *

References