CVE-2009-0315 Affecting xchat-tcl package, versions *


Severity

Recommended
low

Based on CentOS security rating.

Threat Intelligence

EPSS
0.04% (6th percentile)

Do your applications use this vulnerable package?

In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.

Test your applications
  • Snyk IDSNYK-CENTOS6-XCHATTCL-1939065
  • published26 Jul 2021
  • disclosed6 Aug 2008

Introduced: 6 Aug 2008

CVE-2009-0315  (opens in a new tab)

How to fix?

There is no fixed version for Centos:6 xchat-tcl.

NVD Description

Note: Versions mentioned in the description apply only to the upstream xchat-tcl package and not the xchat-tcl package as distributed by Centos. See How to fix? for Centos:6 relevant fixed versions and status.

Untrusted search path vulnerability in the Python module in xchat allows local users to execute arbitrary code via a Trojan horse Python file in the current working directory, related to a vulnerability in the PySys_SetArgv function (CVE-2008-5983).

CVSS Scores

version 3.1