Lucene search

K
osvGoogleOSV:PYSEC-2014-82
HistoryMay 19, 2014 - 2:55 p.m.

PYSEC-2014-82

2014-05-1914:55:00
Google
osv.dev
9

EPSS

0

Percentile

10.1%

FileSystemBytecodeCache in Jinja2 2.7.2 does not properly create temporary directories, which allows local users to gain privileges by pre-creating a temporary directory with a user’s uid. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-1402.