MGASA-2015-0023

Source
https://advisories.mageia.org/MGASA-2015-0023.html
Import Source
https://advisories.mageia.org/MGASA-2015-0023.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2015-0023
Related
Published
2015-01-14T21:55:47Z
Modified
2015-01-14T21:48:10Z
Summary
Updated python-pip packages fix CVE-2014-8991
Details

Updated python-pip packages fix security vulnerability:

pip 1.3 through 1.5.6 allows local users to cause a denial of service (prevention of package installation) by creating a /tmp/pip-build-* file for another user (CVE-2014-8991).

References
Credits

Affected packages

Mageia:4 / python-pip

Package

Name
python-pip
Purl
pkg:rpm/mageia/python-pip?distro=mageia-4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.4.1-4.2.mga4

Ecosystem specific

{
    "section": "core"
}