Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Message-ID: <20151214150939.3f80b012@redhat.com>
Date: Mon, 14 Dec 2015 15:09:39 +0100
From: Stefan Cornelius <scorneli@...hat.com>
To: oss-security@...ts.openwall.com
Subject: CVE request: Shell Injection in Pygments
 FontManager._get_nix_font_path

Hi,

Can we have a CVE for this shell injection issue in Pygments:

E-Mail to Full Disclosure:
http://seclists.org/fulldisclosure/2015/Oct/4

Red Hat bug:
https://bugzilla.redhat.com/show_bug.cgi?id=1276321

Thanks,
-- 
Stefan Cornelius / Red Hat Product Security

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.