Bug#616673: rhythmbox-plugins: Plugin "context" contains hardcoded path to /tmp/context/

Josselin Mouette joss at debian.org
Mon Jun 25 17:13:06 UTC 2012


Le vendredi 22 juin 2012 à 21:16 +0200, Josselin Mouette a écrit : 
> Sorry for not replying earlier.
> This terrible newbie mistake is probably a local privilege escalation
> vulnerability. 
> 
> Squeeze is affected.

This is CVE-2012-3355.

-- 
 .''`.      Josselin Mouette
: :' :
`. `'
  `-






More information about the pkg-gnome-maintainers mailing list