Lucene search

K
ubuntucveUbuntu.comUB:CVE-2014-1929
HistoryOct 25, 2014 - 12:00 a.m.

CVE-2014-1929

2014-10-2500:00:00
ubuntu.com
ubuntu.com
18

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.011

Percentile

84.6%

python-gnupg 0.3.5 and 0.3.6 allows context-dependent attackers to have an
unspecified impact via vectors related to β€œoption injection through
positional arguments.” NOTE: this vulnerability exists because of an
incomplete fix for CVE-2013-7323.

Bugs

Notes

Author Note
seth-arnold I believe this issue was fixed by 0.3.6 or an earlier release

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.011

Percentile

84.6%