Candidate: CVE-2009-4081 PublicDate: 2009-11-29 13:07:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4081 Description: Untrusted search path vulnerability in dstat before r3199 allows local users to gain privileges via a Trojan horse Python module in the current working directory, a different vulnerability than CVE-2009-3894. Ubuntu-Description: Notes: sbeattie> according to gentoo bug report, the commit that fixed this sbeattie> issue made it into the 0.7.0 release Bugs: http://bugs.gentoo.org/show_bug.cgi?id=293497 Priority: medium Discovered-by: Assigned-to: CVSS: Patches_dstat: upstream_dstat: released (0.7.0) dapper_dstat: ignored (reached end-of-life) hardy_dstat: ignored (reached end-of-life) intrepid_dstat: needs-triage (reached end-of-life) jaunty_dstat: ignored (reached end-of-life) karmic_dstat: ignored (reached end-of-life) lucid_dstat: not-affected (0.7.0-1) maverick_dstat: not-affected (0.7.0-1) natty_dstat: not-affected (0.7.0-1) oneiric_dstat: not-affected (0.7.0-1) devel_dstat: not-affected (0.7.0-1)