Mandrake Linux Security Advisory : dia (MDKSA-2005:187)
Medium Nessus Plugin ID 20432
SynopsisThe remote Mandrake Linux host is missing a security update.
DescriptionJoxean Koret discovered that the Python SVG import plugin in dia, a vector-oriented diagram editor, does not properly sanitise data read from an SVG file and is hence vulnerable to execute arbitrary Python code.
The updated packages have been patched to address this issue.
SolutionUpdate the affected dia package.