← Back

Logilab

logilab

2 CVEs • 1 product

Products (1)

Click to collapse
Toggle

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
2Logilab
Opensuse
2Logilab Common
Opensuse
May 6, 2026
Mar 11, 2014
N/A· v4
N/A· v3
4.4 MEDIUM· v2
The Execute class in shellutils in logilab-commons before 0.61.0 uses tempfile.mktemp, which allows local users to have an unspecified impact by pre-creating the temporary file.
2Logilab
Opensuse
2Logilab Common
Opensuse
May 6, 2026
Mar 11, 2014
N/A· v4
N/A· v3
4.4 MEDIUM· v2
The (1) extract_keys_from_pdf and (2) fill_pdf functions in pdf_ext.py in logilab-commons before 0.61.0 allows local users to overwrite arbitrary files and possibly have other unspecified impact via a symlink attack on /...Show more
The (1) extract_keys_from_pdf and (2) fill_pdf functions in pdf_ext.py in logilab-commons before 0.61.0 allows local users to overwrite arbitrary files and possibly have other unspecified impact via a symlink attack on /tmp/toto.fdf.Show less