Candidate: CVE-2009-0317 PublicDate: 2009-01-28 11:30:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-0317 Description: Untrusted search path vulnerability in the Python language bindings for Nautilus (nautilus-python) allows local users to execute arbitrary code via a Trojan horse Python file in the current working directory, related to a vulnerability in the PySys_SetArgv function (CVE-2008-5983). Ubuntu-Description: Notes: Bugs: https://bugs.launchpad.net/ubuntu/+source/nautilus-python/+bug/322196 Priority: low Discovered-by: Assigned-to: CVSS: Patches_nautilus-python: upstream_nautilus-python: released (0.6.1) dapper_nautilus-python: ignored (reached end-of-life) gutsy_nautilus-python: needed (reached end-of-life) hardy_nautilus-python: ignored (reached end-of-life) intrepid_nautilus-python: needed (reached end-of-life) jaunty_nautilus-python: ignored (reached end-of-life) karmic_nautilus-python: ignored (reached end-of-life) lucid_nautilus-python: not-affected (0.6.1-1) maverick_nautilus-python: not-affected (0.6.1-1) natty_nautilus-python: not-affected (0.6.1-1) oneiric_nautilus-python: not-affected (0.6.1-1) devel_nautilus-python: not-affected (0.6.1-1)