CVE Vulnerabilities

CVE-2009-0317

Published: Jan 28, 2009 | Modified: Feb 05, 2009
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.9 MEDIUM
AV:L/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
LOW

Untrusted search path vulnerability in the Python language bindings for Nautilus (nautilus-python) allows local users to execute arbitrary code via a Trojan horse Python file in the current working directory, related to a vulnerability in the PySys_SetArgv function (CVE-2008-5983).

Affected Software

Name Vendor Start Version End Version
Nautilus-python Gnome * *
Nautilus-python Ubuntu dapper *
Nautilus-python Ubuntu gutsy *
Nautilus-python Ubuntu hardy *
Nautilus-python Ubuntu intrepid *
Nautilus-python Ubuntu jaunty *
Nautilus-python Ubuntu karmic *
Nautilus-python Ubuntu upstream *

References