Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2009-0367

Опубликовано: 05 мар. 2009
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS2: 9.3

Описание

The Python AI module in Wesnoth 1.4.x and 1.5 before 1.5.11 allows remote attackers to escape the sandbox and execute arbitrary code by using a whitelisted module that imports an unsafe module, then using a hierarchical module name to access the unsafe module through the whitelisted module.

РелизСтатусПримечание
dapper

not-affected

code not present
devel

not-affected

1:1.4.7-4
gutsy

released

1.2.6-1ubuntu2.5
hardy

released

1:1.4-1ubuntu0.1
intrepid

released

1:1.4.5-1ubuntu0.2
upstream

released

1:1.4.7-4

Показывать по

Ссылки на источники

EPSS

Процентиль: 95%
0.10936
Средний

9.3 Critical

CVSS2

Связанные уязвимости

nvd
больше 17 лет назад

The Python AI module in Wesnoth 1.4.x and 1.5 before 1.5.11 allows remote attackers to escape the sandbox and execute arbitrary code by using a whitelisted module that imports an unsafe module, then using a hierarchical module name to access the unsafe module through the whitelisted module.

debian
больше 17 лет назад

The Python AI module in Wesnoth 1.4.x and 1.5 before 1.5.11 allows rem ...

github
больше 4 лет назад

The Python AI module in Wesnoth 1.4.x and 1.5 before 1.5.11 allows remote attackers to escape the sandbox and execute arbitrary code by using a whitelisted module that imports an unsafe module, then using a hierarchical module name to access the unsafe module through the whitelisted module.

EPSS

Процентиль: 95%
0.10936
Средний

9.3 Critical

CVSS2