Lucene search

K
githubGitHub Advisory DatabaseGHSA-8R7Q-CVJQ-X353
HistoryMay 14, 2022 - 4:04 a.m.

Incorrect Privilege Assignment in Jinja2

2022-05-1404:04:14
CWE-266
GitHub Advisory Database
github.com
11
jinja2
privilege assignment
filesystembytecodecache
local users
temporary files
crafted file
security vulnerability

CVSS2

4.4

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:M/Au:N/C:P/I:P/A:P

AI Score

5.8

Confidence

Low

EPSS

0

Percentile

10.1%

The default configuration for bccache.FileSystemBytecodeCache in Jinja2 before 2.7.2 does not properly create temporary files, which allows local users to gain privileges via a crafted .cache file with a name starting with __jinja2_ in /tmp.

Affected configurations

Vulners
Node
pocoojinja2Range<2.7.2
VendorProductVersionCPE
pocoojinja2*cpe:2.3:a:pocoo:jinja2:*:*:*:*:*:*:*:*

CVSS2

4.4

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:M/Au:N/C:P/I:P/A:P

AI Score

5.8

Confidence

Low

EPSS

0

Percentile

10.1%