Sploitus

CVE-2014-0012

No indexed exploits for CVE-2014-0012 yet

FileSystemBytecodeCache in Jinja2 2.7.2 does not properly create temporary directories, which allows local users to gain privileges by pre-creating a temporary directory with a user's uid. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-1402.

Affected products
Alt Linux, Jinja2, Suse
Pocoo jinja2
= 2.7.2
Fix
Available
CVSS 2.0
4.4 MEDIUM
EPSS
0.4% (36th percentile)
Weakness
CWE-264
NVD status
Modified
Published
2014-05-19
CVE-2014-0012 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2014-0012 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2014-0012 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.