#4433 NORM Update.: Potential for arbitrary code execution due to use of sharedstate/pickle

Zarro Boogs per Child bugtracker at laptop.org
Wed Oct 31 06:49:45 EDT 2007


#4433: Potential for arbitrary code execution due to use of sharedstate/pickle
----------------------------------+-----------------------------------------
  Reporter:  smcv                 |       Owner:  rwh          
      Type:  defect               |      Status:  new          
  Priority:  normal               |   Milestone:  Update.2     
 Component:  calculator-activity  |     Version:               
Resolution:                       |    Keywords:  collaboration
  Verified:  0                    |  
----------------------------------+-----------------------------------------

Comment(by rwh):

 In fact the code path including the pickle calls is never called in the
 current version.

-- 
Ticket URL: <https://dev.laptop.org/ticket/4433#comment:3>
One Laptop Per Child <https://dev.laptop.org>
OLPC bug tracking system



More information about the Bugs mailing list