MGASA-2014-0342

Source
https://advisories.mageia.org/MGASA-2014-0342.html
Import Source
https://advisories.mageia.org/MGASA-2014-0342.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2014-0342
Related
Published
2014-08-21T09:36:13Z
Modified
2026-02-04T02:21:43.770874Z
Summary
Updated catfish package fixes CVE-2014-2096
Details

Updated catfish package fixes security vulnerabilities:

Untrusted search path vulnerability in Catfish allows local users to gain privileges via a Trojan horse bin/catfish.py in the current working directory (CVE-2014-2096).

Additionally, the update adds a missing requirement for the gnome-icon-theme-symbolic package.

References
Credits

Affected packages

Mageia:4 / catfish

Package

Name
catfish
Purl
pkg:rpm/mageia/catfish?arch=source&distro=mageia-4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.8.2-2.1.mga4

Ecosystem specific

{
    "section": "core"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2014-0342.json"