CVE Database
/

CVE-2014-0012

Back to search

CVE-2014-0012

Published: May 19, 2014

Modified: Aug 6, 2024

PUBLISHED

Description

FileSystemBytecodeCache in Jinja2 2.7.2 does not properly create temporary directories, which allows local users to gain privileges by pre-creating a temporary directory with a user's uid. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-1402.

VendorProductVersions

n/a

n/a

affected
n/a

References

56328
third-party-advisory
x_refsource_SECUNIA
60738
third-party-advisory
x_refsource_SECUNIA
GLSA-201408-13
vendor-advisory
x_refsource_GENTOO

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now