I for one...
...am disappointed at the lack of NSFW content in this article, given the nice red NSFW tag.
6 publicly visible posts • joined 17 Aug 2007
I mean, for this kind of attack to be successful a malware author would need access to the source code of a safe application (to do the required additions to it) as well as this evil application.
If the bad guys have the ability to add code to your trusted apps then you're screwed anyway.
This isn't anything to do with Linux's security. The main python CGI script is coded badly. It's the usual mistake of implicitly trusting the outside world rather than mistrusting it.
This could have happened on any OS, with any Architecture, as long as it had the python libraries installed (hooray for Platform agnostic languages). At least they had the foresight to react instantly to the bug report and didn't try and cover it up or ignore it.