<title>SPE: Insecure file permissions</title>
SPE files are installed with world-writeable permissions, potentially
leading to privilege escalation.
<announced>October 15, 2005</announced>
<revised>May 22, 2006: 02</revised>
SPE is a cross-platform Python Integrated Development Environment
It was reported that due to an oversight all SPE's files are set as
A local attacker could modify the executable files, causing arbitrary
code to be executed with the permissions of the user running SPE.
There is no known workaround at this time.
All SPE users should upgrade to the latest version:
# emerge --sync
# emerge --ask --oneshot --verbose dev-util/spe</code>
