MGASA-2014-0341

Source
https://advisories.mageia.org/MGASA-2014-0341.html
Import Source
https://advisories.mageia.org/MGASA-2014-0341.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2014-0341
Upstream
Published
2014-08-21T09:36:13Z
Modified
2026-04-16T06:25:23.231973015Z
Summary
Updated catfish package fixes CVE-2014-2093
Details

Updated catfish package fixes security vulnerability:

Untrusted search path vulnerability in Catfish allows local users to gain privileges via a Trojan horse catfish.py in the current working directory (CVE-2014-2093).

Additionally, the update fixes the application icon symlink and a crash when some icons are missing from the icon theme.

References
Credits

Affected packages

Mageia:3 / catfish

Package

Name
catfish
Purl
pkg:rpm/mageia/catfish?arch=source&distro=mageia-3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.3.2-6.1.mga3

Ecosystem specific

{
    "section": "core"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2014-0341.json"