CVE-2014-8991

pip 1.3 through 1.5.6 allows local users to cause a denial of service (prevention of package installation) by creating a /tmp/pip-build-* file for another user.
Configurations

Configuration 1 (hide)

cpe:2.3:a:pypa:pip:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:o:oracle:solaris:11.2:*:*:*:*:*:*:*

History

15 Mar 2021, 16:17

Type Values Removed Values Added
CWE CWE-264 NVD-CWE-noinfo
CPE cpe:2.3:a:python:pip:1.4:*:*:*:*:*:*:*
cpe:2.3:a:python:pip:1.3.1:*:*:*:*:*:*:*
cpe:2.3:a:python:pip:1.4.1:*:*:*:*:*:*:*
cpe:2.3:a:python:pip:1.5:*:*:*:*:*:*:*
cpe:2.3:a:python:pip:1.5.2:*:*:*:*:*:*:*
cpe:2.3:a:python:pip:1.5.6:*:*:*:*:*:*:*
cpe:2.3:a:python:pip:1.5.3:*:*:*:*:*:*:*
cpe:2.3:a:python:pip:1.5.5:*:*:*:*:*:*:*
cpe:2.3:a:python:pip:1.5.1:*:*:*:*:*:*:*
cpe:2.3:a:python:pip:1.3:*:*:*:*:*:*:*
cpe:2.3:a:python:pip:1.5.4:*:*:*:*:*:*:*
cpe:2.3:a:pypa:pip:*:*:*:*:*:*:*:*
References (MLIST) http://www.openwall.com/lists/oss-security/2014/11/20/6 - Third Party Advisory (MLIST) http://www.openwall.com/lists/oss-security/2014/11/20/6 - Mailing List, Third Party Advisory
References (MLIST) http://www.openwall.com/lists/oss-security/2014/11/19/17 - Third Party Advisory (MLIST) http://www.openwall.com/lists/oss-security/2014/11/19/17 - Mailing List, Third Party Advisory
References (CONFIRM) https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=725847 - Third Party Advisory (CONFIRM) https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=725847 - Issue Tracking, Third Party Advisory

Information

Published : 2014-11-24 15:59

Updated : 2023-12-10 11:31


NVD link : CVE-2014-8991

Mitre link : CVE-2014-8991

CVE.ORG link : CVE-2014-8991


JSON object : View

Products Affected

pypa

  • pip

oracle

  • solaris