Back to search
CVE-2014-3539
Published: Apr 6, 2018
Modified: Aug 6, 2024
PUBLISHED
Description
base/oi/doa.py in the Rope library in CPython (aka Python) allows remote attackers to execute arbitrary code by leveraging an unsafe call to pickle.load.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
[oss-security] 20150206 python-rope: pickle.load of remotely supplied data with no authentication required
mailing-list
x_refsource_MLIST
https://bugzilla.redhat.com/show_bug.cgi?id=1116485
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now