MGASA-2016-0001

Source
https://advisories.mageia.org/MGASA-2016-0001.html
Import Source
https://advisories.mageia.org/MGASA-2016-0001.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2016-0001
Related
Published
2016-01-09T17:08:38Z
Modified
2016-01-09T17:00:18Z
Summary
Updated pitivi packages fix security vulnerability
Details

In pitivi before 0.95, double-clicking a file in the user's media library with a specially-crafted path or filename allows for arbitrary code execution with the permissions of the user running Pitivi (CVE-2015-0855).

References
Credits

Affected packages

Mageia:5 / pitivi

Package

Name
pitivi
Purl
pkg:rpm/mageia/pitivi?arch=source&distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.94-3.1.mga5

Ecosystem specific

{
    "section": "core"
}