Bug#860268: .desktop files can hide malware in Nautilus

Phil Wyett philwyett at kathenas.org
Fri Sep 22 06:20:53 UTC 2017


Hi,

Now that the CVE (CVE-2017-14604) has been issued and this would (well, if it
ever does) pass into debian as a security update. I have updated the debdiff
accordingly. See attached.

Link to CVE: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-14604

If any tweaks need to be made. Please let me know via this bug report.

If anyone has issues running with this patch applied. Please be sure to add
information to this bug report.

Regards

Phil

-- 
*** If this is a mailing list, I am subscribed, no need to CC me.***

Playing the game for the games sake.

Web: https://kathenas.org

GitLab: https://gitlab.com/kathenas

Twitter: kathenasorg

Instagram: kathenasorg

GPG: 1B97 6556 913F 73F3 9C9B 25C4 2961 D9B6 2017 A57A
-------------- next part --------------
A non-text attachment was scrubbed...
Name: nautilus_3.22.3-1_to_nautilus_3.22.3-1+deb9u1.debdiff
Type: text/x-patch
Size: 33070 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/pkg-gnome-maintainers/attachments/20170922/08fe94ee/attachment-0001.bin>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: This is a digitally signed message part
URL: <http://lists.alioth.debian.org/pipermail/pkg-gnome-maintainers/attachments/20170922/08fe94ee/attachment-0001.sig>


More information about the pkg-gnome-maintainers mailing list