CVE Vulnerabilities

CVE-2014-1839

Published: Mar 11, 2014 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.4 MEDIUM
AV:L/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

The Execute class in shellutils in logilab-commons before 0.61.0 uses tempfile.mktemp, which allows local users to have an unspecified impact by pre-creating the temporary file.

Affected Software

NameVendorStart VersionEnd Version
OpensuseOpensuse12.3 (including)12.3 (including)
OpensuseOpensuse13.1 (including)13.1 (including)
Logilab-commonUbuntuartful*
Logilab-commonUbuntulucid*
Logilab-commonUbuntuprecise*
Logilab-commonUbuntuquantal*
Logilab-commonUbuntusaucy*
Logilab-commonUbuntutrusty*
Logilab-commonUbuntuutopic*
Logilab-commonUbuntuvivid*
Logilab-commonUbuntuwily*
Logilab-commonUbuntuyakkety*
Logilab-commonUbuntuzesty*

References