CVE-2013-4251
published 2019-11-04CVE-2013-4251: The scipy.weave component in SciPy before 0.12.1 creates insecure temporary directories.
PriorityP336high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.43%
34.6th percentile
The scipy.weave component in SciPy before 0.12.1 creates insecure temporary directories.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| redhat | enterprise_linux | — | — |
| scipy | scipy | < 0.12.1 | 0.12.1 |
| scipy | scipy | — | — |
| scipy | scipy | >= 0 < 0.12.1 | 0.12.1 |
| scipy | scipy | >= 0 < bd296e0336420b840fcd2faabb97084fd252a973 | bd296e0336420b840fcd2faabb97084fd252a973 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
SciPy creates insecure temporary directories
ghsa·2022-05-05
CVE-2013-4251 [HIGH] CWE-269 SciPy creates insecure temporary directories
SciPy creates insecure temporary directories
The `scipy.weave` component in SciPy before 0.12.1 creates insecure temporary directories.
OSV
SciPy creates insecure temporary directories
osv·2022-05-05
CVE-2013-4251 [HIGH] SciPy creates insecure temporary directories
SciPy creates insecure temporary directories
The `scipy.weave` component in SciPy before 0.12.1 creates insecure temporary directories.
OSV
CVE-2013-4251: The scipy
osv·2019-11-04
CVE-2013-4251 CVE-2013-4251: The scipy
The scipy.weave component in SciPy before 0.12.1 creates insecure temporary directories.
Red Hat
scipy: weave /tmp and current directory issues
vendor_redhat·2013-10-10·CVSS 7.8
CVE-2013-4251 [HIGH] CWE-59 scipy: weave /tmp and current directory issues
scipy: weave /tmp and current directory issues
The scipy.weave component in SciPy before 0.12.1 creates insecure temporary directories.
Package: scipy (Red Hat Enterprise Linux 6) - Will not fix
Package: scipy (Red Hat Enterprise Linux 7) - Not affected
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2013-4251 scipy: weave /tmp and current directory issues [fedora-all]
bugzilla·2013-10-11·CVSS 7.8
CVE-2013-4251 [HIGH] CVE-2013-4251 scipy: weave /tmp and current directory issues [fedora-all]
CVE-2013-4251 scipy: weave /tmp and current directory issues [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
Please note: this issue affects
Bugzilla
CVE-2013-4251 scipy: weave /tmp and current directory issues [epel-5]
bugzilla·2013-10-11·CVSS 7.8
CVE-2013-4251 [HIGH] CVE-2013-4251 scipy: weave /tmp and current directory issues [epel-5]
CVE-2013-4251 scipy: weave /tmp and current directory issues [epel-5]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora EPEL.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
epel-5 tracking bug for scipy:
Bugzilla
CVE-2013-4251 scipy: weave /tmp and current directory issues
bugzilla·2013-02-28·CVSS 7.8
CVE-2013-4251 [HIGH] CVE-2013-4251 scipy: weave /tmp and current directory issues
CVE-2013-4251 scipy: weave /tmp and current directory issues
I think it would be a good idea to remove the fallback to the current directory in the weave code (which happens if ~/.python26_compiled is not a writable directory). This looks unsafe when the current directory is not trusted.
Discussion:
I'm sorry, but I'm a bit puzzled by this one. You are talking about build_dir, right? Current routine sets it to current dir:
build_dir = configure_build_dir(module_dir)
which is a bug IMO, because argument 'build_dir' is completely ignored -- I'm gonna report it to upstream. But back to the routine that is trying to set build_dir if it's not specified:
1. if build_dir is not writable, it is set to current dir
2. if current dir is not writable either, '/tmp' is used then
So you don't lik
http://lists.fedoraproject.org/pipermail/package-announce/2013-November/120696.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2013-October/119759.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2013-October/119771.htmlhttp://www.securityfocus.com/bid/63008https://access.redhat.com/security/cve/cve-2013-4251https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2013-4251https://bugzilla.suse.com/show_bug.cgi?id=CVE-2013-4251https://exchange.xforce.ibmcloud.com/vulnerabilities/88052https://github.com/scipy/scipy/commit/bd296e0336420b840fcd2faabb97084fd252a973https://security-tracker.debian.org/tracker/CVE-2013-4251http://lists.fedoraproject.org/pipermail/package-announce/2013-November/120696.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2013-October/119759.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2013-October/119771.htmlhttp://www.securityfocus.com/bid/63008https://access.redhat.com/security/cve/cve-2013-4251https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2013-4251https://bugzilla.suse.com/show_bug.cgi?id=CVE-2013-4251https://exchange.xforce.ibmcloud.com/vulnerabilities/88052https://github.com/scipy/scipy/commit/bd296e0336420b840fcd2faabb97084fd252a973https://security-tracker.debian.org/tracker/CVE-2013-4251
2019-11-04
Published