Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2016:0065-1

Опубликовано: 11 янв. 2016
Источник: suse-cvrf

Описание

Security update for pitivi

This update for pitivi fixes the following issues:

  • CVE-2015-0855: 'Insecure use of os.system()' (boo#960339)

Список пакетов

openSUSE Leap 42.1
pitivi-0.94-7.1
pitivi-lang-0.94-7.1

Описание

The _mediaLibraryPlayCb function in mainwindow.py in pitivi before 0.95 allows attackers to execute arbitrary code via shell metacharacters in a file path.


Затронутые продукты
openSUSE Leap 42.1:pitivi-0.94-7.1
openSUSE Leap 42.1:pitivi-lang-0.94-7.1

Ссылки