CVE-2009-0318
EPSS 0.07%gnumeric - insecure python search path
Published: 1/28/2009Modified: 4/28/2026
Also known as:DEBIAN-CVE-2009-0318
Description
Untrusted search path vulnerability in the GObject Python interpreter wrapper in Gnumeric allows local users to execute arbitrary code via a Trojan horse Python file in the current working directory, related to a vulnerability in the PySys_SetArgv function (CVE-2008-5983).
Affected packages (2)
- Debian/gnumericfrom 0, < 1.8.4-3
- Debian/gnumericfrom 0, < 1.8.3-5+lenny1