CVE Vulnerabilities

CVE-2009-0318

Published: Jan 28, 2009 | Modified: Apr 16, 2009
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.9 MEDIUM
AV:L/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
LOW

Untrusted search path vulnerability in the GObject Python interpreter wrapper in Gnumeric allows local users to execute arbitrary code via a Trojan horse Python file in the current working directory, related to a vulnerability in the PySys_SetArgv function (CVE-2008-5983).

Affected Software

Name Vendor Start Version End Version
Gnumeric Gnome * *
Gnumeric Ubuntu dapper *
Gnumeric Ubuntu gutsy *
Gnumeric Ubuntu hardy *
Gnumeric Ubuntu intrepid *
Gnumeric Ubuntu jaunty *
Gnumeric Ubuntu upstream *

References