Bug#513419: nautilus-python: CVE-2009-0317 untrusted search path vulnerability

2009-02-01 Thread Cyril Brulebois
Nico Golde n...@debian.org (28/01/2009): Package: nautilus-python Severity: grave Tags: security patch I've just sponsored the package Evgeni has prepared without having it through the usual “Intent to NMU” way for the following reasons: - security RC bugs patch available; - no NACK for the

Bug#513419: nautilus-python: CVE-2009-0317 untrusted search path vulnerability

2009-01-29 Thread Evgeni Golov
Hey *, On Wed, 28 Jan 2009 23:12:16 +0100 Nico Golde wrote: CVE-2009-0317[0]: | Untrusted search path vulnerability in the Python language bindings | for Nautilus (nautilus-python) allows local users to execute arbitrary | code via a Trojan horse Python file in the current working directory,

Bug#513419: nautilus-python: CVE-2009-0317 untrusted search path vulnerability

2009-01-28 Thread Nico Golde
Package: nautilus-python Severity: grave Tags: security patch Hi, the following CVE (Common Vulnerabilities Exposures) id was published for nautilus-python. CVE-2009-0317[0]: | Untrusted search path vulnerability in the Python language bindings | for Nautilus (nautilus-python) allows local