Lucene search

K
osvGoogleOSV:GHSA-53MR-44PP-CRF4
HistoryMay 13, 2022 - 1:11 a.m.

pip lack of randomness in build directory

2022-05-1301:11:25
Google
osv.dev
6
pip
denial of service
randomness
build directory
software

AI Score

6.4

Confidence

High

EPSS

0.001

Percentile

31.0%

pip 1.3 through 1.5.6 allows local users to cause a denial of service (prevention of package installation) by creating a /tmp/pip-build-* file for another user.

AI Score

6.4

Confidence

High

EPSS

0.001

Percentile

31.0%