Fedora 9 : dia-0.96.1-7.fc9 (2009-1057)
Medium Nessus Plugin ID 35466
SynopsisThe remote Fedora host is missing a security update.
DescriptionFilter out untrusted python modules search path to remove the possibility to run arbitrary code on the user's system if there is a python file in dia's working directory named the same as one that dia's python scripts try to import.
Note that Tenable Network Security has extracted the preceding description block directly from the Fedora security advisory. Tenable has attempted to automatically clean and format it as much as possible without introducing additional issues.
SolutionUpdate the affected dia package.