CVE-2014-8583

mod_wsgi before 4.2.4 for Apache, when creating a daemon process group, does not properly handle when group privileges cannot be dropped, which might allow attackers to gain privileges via unspecified vectors.
Configurations

Configuration 1 (hide)

cpe:2.3:a:modwsgi:mod_wsgi:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2014-12-16 18:59

Updated : 2023-12-10 11:31


NVD link : CVE-2014-8583

Mitre link : CVE-2014-8583

CVE.ORG link : CVE-2014-8583


JSON object : View

Products Affected

modwsgi

  • mod_wsgi
CWE
CWE-254

7PK - Security Features