Untrusted search path vulnerability in plugins/abrt-action-install-debuginfo-to-abrt-cache.c in Automatic Bug Reporting Tool (ABRT) 2.0.9 and earlier allows local users to load and execute arbitrary Python modules by modifying the PYTHONPATH environment variable to reference a malicious Python module.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2013-03-12T22:00:00Z

Updated: 2024-09-16T16:38:20.675Z

Reserved: 2012-10-24T00:00:00Z

Link: CVE-2012-5659

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2013-03-12T23:55:01.580

Modified: 2013-03-19T04:00:00.000

Link: CVE-2012-5659

cve-icon Redhat

Severity : Important

Publid Date: 2013-01-30T00:00:00Z

Links: CVE-2012-5659 - Bugzilla