[issue5753] CVE-2008-5983 python: untrusted python modules search path

Gregory P. Smith report at bugs.python.org
Wed May 6 23:31:03 CEST 2009


Gregory P. Smith <greg at krypto.org> added the comment:

gedit does it here:

http://git.gnome.org/cgit/gedit/tree/plugin-loaders/python/gedit-plugin-
loader-python.c#n542

I've emailed the file's author (Jesse) out of the blue to see if he knows 
why PySys_SetArgv() was called.

----------

_______________________________________
Python tracker <report at bugs.python.org>
<http://bugs.python.org/issue5753>
_______________________________________


More information about the Python-bugs-list mailing list