Mandriva Linux Security Advisory : vim (MDVSA-2009:047-1)
Medium Nessus Plugin ID 36407
SynopsisThe remote Mandriva Linux host is missing one or more security updates.
DescriptionPython has a variable called sys.path that contains all paths where Python loads modules by using import scripting procedure. A wrong handling of that variable enables local attackers to execute arbitrary code via Python scripting in the current Vim working directory (CVE-2009-0316).
This update provides fix for that vulnerability.
This update also provides updated packages for Mandriva Linux 2008.0.
SolutionUpdate the affected packages.