Epiphany 'PySys_SetArgv' Remote Command Execution Vulnerability
BID:33441
Info
Epiphany 'PySys_SetArgv' Remote Command Execution Vulnerability
| Bugtraq ID: | 33441 |
| Class: | Design Error |
| CVE: |
CVE-2008-5985 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 26 2009 12:00AM |
| Updated: | Apr 13 2015 09:45PM |
| Credit: | James Vega |
| Vulnerable: |
Mandriva Linux Mandrake 2009.0 x86_64 Mandriva Linux Mandrake 2009.0 Mandriva Linux Mandrake 2008.1 x86_64 Mandriva Linux Mandrake 2008.1 GNOME Epiphany 1.6.5 GNOME Epiphany 1.6.3 GNOME Epiphany 1.4.4 GNOME Epiphany 1.4 GNOME Epiphany 1.2.9 GNOME Epiphany 1.2.5 GNOME Epiphany 1.2 GNOME Epiphany 2.22 Gentoo Linux Debian Linux 4.0 sparc Debian Linux 4.0 s/390 Debian Linux 4.0 powerpc Debian Linux 4.0 mipsel Debian Linux 4.0 mips Debian Linux 4.0 m68k Debian Linux 4.0 ia-64 Debian Linux 4.0 ia-32 Debian Linux 4.0 hppa Debian Linux 4.0 arm Debian Linux 4.0 amd64 Debian Linux 4.0 alpha Debian Linux 4.0 |
| Not Vulnerable: | |
Discussion
Epiphany 'PySys_SetArgv' Remote Command Execution Vulnerability
Epiphany is prone to a remote command-execution vulnerability.
An attacker could exploit this issue by enticing an unsuspecting victim to execute the vulnerable application in a directory containing a malicious Python file. A successful exploit will allow arbitrary Python commands to run with the privileges of the currently logged-in user.
Epiphany is prone to a remote command-execution vulnerability.
An attacker could exploit this issue by enticing an unsuspecting victim to execute the vulnerable application in a directory containing a malicious Python file. A successful exploit will allow arbitrary Python commands to run with the privileges of the currently logged-in user.
Exploit / POC
Epiphany 'PySys_SetArgv' Remote Command Execution Vulnerability
An attacker may exploit this issue using commonly available tools.
An attacker may exploit this issue using commonly available tools.
Solution / Fix
Epiphany 'PySys_SetArgv' Remote Command Execution Vulnerability
Solution:
Updates are available. Please see the references for more information.
Mandriva Linux Mandrake 2008.1 x86_64
Mandriva Linux Mandrake 2008.1
Mandriva Linux Mandrake 2009.0
Mandriva Linux Mandrake 2009.0 x86_64
Solution:
Updates are available. Please see the references for more information.
Mandriva Linux Mandrake 2008.1 x86_64
-
Mandriva epiphany-2.22.0-4.7mdv2008.1.x86_64.rpm
http://www.mandriva.com/en/download/ -
Mandriva epiphany-2.22.3-0.3mdv2008.1.x86_64.rpm
http://www.mandriva.com/en/download/ -
Mandriva epiphany-devel-2.22.0-4.7mdv2008.1.x86_64.rpm
http://www.mandriva.com/en/download/ -
Mandriva epiphany-devel-2.22.3-0.3mdv2008.1.x86_64.rpm
http://www.mandriva.com/en/download/
Mandriva Linux Mandrake 2008.1
-
Mandriva epiphany-2.22.0-4.7mdv2008.1.i586.rpm
http://www.mandriva.com/en/download/ -
Mandriva epiphany-2.22.3-0.3mdv2008.1.i586.rpm
http://www.mandriva.com/en/download/ -
Mandriva epiphany-devel-2.22.0-4.7mdv2008.1.i586.rpm
http://www.mandriva.com/en/download/ -
Mandriva epiphany-devel-2.22.3-0.3mdv2008.1.i586.rpm
http://www.mandriva.com/en/download/
Mandriva Linux Mandrake 2009.0
-
Mandriva epiphany-2.24.0.1-3.4mdv2009.0.i586.rpm
http://www.mandriva.com/en/download/ -
Mandriva epiphany-2.24.0.1-3.5mdv2009.0.i586.rpm
http://www.mandriva.com/en/download/ -
Mandriva epiphany-devel-2.24.0.1-3.4mdv2009.0.i586.rpm
http://www.mandriva.com/en/download/ -
Mandriva epiphany-devel-2.24.0.1-3.5mdv2009.0.i586.rpm
http://www.mandriva.com/en/download/
Mandriva Linux Mandrake 2009.0 x86_64
-
Mandriva epiphany-2.24.0.1-3.4mdv2009.0.x86_64.rpm
http://www.mandriva.com/en/download/ -
Mandriva epiphany-2.24.0.1-3.5mdv2009.0.x86_64.rpm
http://www.mandriva.com/en/download/ -
Mandriva epiphany-devel-2.24.0.1-3.4mdv2009.0.x86_64.rpm
http://www.mandriva.com/en/download/ -
Mandriva epiphany-devel-2.24.0.1-3.5mdv2009.0.x86_64.rpm
http://www.mandriva.com/en/download/
References
Epiphany 'PySys_SetArgv' Remote Command Execution Vulnerability
References:
References:
- epiphany: untrusted python modules search path (Jan Lieskovsky)
- epiphany-browser: Python plugins load modules from current directory (James Vega)
- Gnome Epiphany Homepage (GNOME)