Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-0012

Опубликовано: 19 мая 2014
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.4

Описание

FileSystemBytecodeCache in Jinja2 2.7.2 does not properly create temporary directories, which allows local users to gain privileges by pre-creating a temporary directory with a user's uid. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-1402.

РелизСтатусПримечание
devel

not-affected

2.7.3-1
esm-infra-legacy/trusty

not-affected

2.7.2-2
lucid

ignored

end of life
precise

released

2.6-1ubuntu0.1
quantal

ignored

end of life
raring

ignored

end of life
saucy

ignored

end of life
trusty

not-affected

2.7.2-2
trusty/esm

not-affected

2.7.2-2
upstream

released

2.7.3,2.7.2-2

Показывать по

EPSS

Процентиль: 28%
0.00101
Низкий

4.4 Medium

CVSS2

Связанные уязвимости

redhat
около 12 лет назад

FileSystemBytecodeCache in Jinja2 2.7.2 does not properly create temporary directories, which allows local users to gain privileges by pre-creating a temporary directory with a user's uid. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-1402.

nvd
больше 11 лет назад

FileSystemBytecodeCache in Jinja2 2.7.2 does not properly create temporary directories, which allows local users to gain privileges by pre-creating a temporary directory with a user's uid. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-1402.

debian
больше 11 лет назад

FileSystemBytecodeCache in Jinja2 2.7.2 does not properly create tempo ...

suse-cvrf
больше 10 лет назад

Security update for python-Jinja2

CVSS3: 6.2
github
больше 3 лет назад

Insecure Temporary File in Jinja2

EPSS

Процентиль: 28%
0.00101
Низкий

4.4 Medium

CVSS2