[Python-modules-team] Bug#652653: python-virtualenv: insecure /tmp file handling
Nico Golde
nion at debian.org
Mon Dec 19 16:19:29 UTC 2011
Package: python-virtualenv
Version: 1.4.9-3
Severity: grave
Tags: patch
Hi,
it was discovered that python-virtualenv is handling /tmp files in an insecure manner.
The following patch fixed this problem:
https://bitbucket.org/ianb/virtualenv/changeset/8be37c509fe5
A CVE id for this issue has been requested.
Kind regards
Nico
More information about the Python-modules-team
mailing list