{"id":"CVE-2009-0315","details":"Untrusted search path vulnerability in the Python module in xchat allows local users to execute arbitrary code via a Trojan horse Python file in the current working directory, related to a vulnerability in the PySys_SetArgv function (CVE-2008-5983).","modified":"2024-06-04T04:00:19Z","published":"2009-01-28T11:30:00Z","withdrawn":"2024-06-30T15:59:01.487942Z","references":[{"type":"ADVISORY","url":"http://www.mandriva.com/security/advisories?name=MDVSA-2009:059"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=481560"},{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2009/01/26/2"},{"type":"WEB","url":"http://www.securityfocus.com/bid/33444"}],"affected":[{"package":{"name":"xchat","ecosystem":"Debian:10","purl":"pkg:deb/debian/xchat?arch=source"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.8.6-2.1"}]}],"ecosystem_specific":{"urgency":"low"},"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2009-0315.json"}}],"schema_version":"1.7.3"}