6.9
CVSSv2

CVE-2009-0315

Published: 28/01/2009 Updated: 06/03/2009
CVSS v2 Base Score: 6.9 | Impact Score: 10 | Exploitability Score: 3.4
VMScore: 614
Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Untrusted search path vulnerability in the Python module in xchat allows local users to execute arbitrary code via a Trojan horse Python file in the current working directory, related to a vulnerability in the PySys_SetArgv function (CVE-2008-5983).

Vulnerable Product Search on Vulmon Subscribe to Product

xchat xchat

Vendor Advisories

Debian Bug report logs - #513509 CVE-2009-0315: Untrusted search path vulnerability Package: xchat; Maintainer for xchat is Gianfranco Costamagna <locutusofborg@debianorg>; Source for xchat is src:xchat (PTS, buildd, popcon) Reported by: Steffen Joeris <steffenjoeris@skolelinuxde> Date: Thu, 29 Jan 2009 18:18:02 U ...