CVE-2023-6597
published 2024-03-19CVE-2023-6597: An issue was found in the CPython `tempfile.TemporaryDirectory` class affecting versions 3.12.1, 3.11.7, 3.10.13, 3.9.18, and 3.8.18 and prior. The…
PriorityP342high7.8CVSS 3.1
AVLACHPRNUINSCCHIHAN
EPSS
0.31%
23.3th percentile
An issue was found in the CPython `tempfile.TemporaryDirectory` class affecting versions 3.12.1, 3.11.7, 3.10.13, 3.9.18, and 3.8.18 and prior.
The tempfile.TemporaryDirectory class would dereference symlinks during cleanup of permissions-related errors. This means users which can run privileged programs are potentially able to modify permissions of files referenced by symlinks in some circumstances.
Affected
19 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | pypy3 | < pypy3 7.3.11+dfsg-2+deb12u2 (bookworm) | pypy3 7.3.11+dfsg-2+deb12u2 (bookworm) |
| debian | python2.7 | < pypy3 7.3.11+dfsg-2+deb12u2 (bookworm) | pypy3 7.3.11+dfsg-2+deb12u2 (bookworm) |
| debian | python3.11 | < pypy3 7.3.11+dfsg-2+deb12u2 (bookworm) | pypy3 7.3.11+dfsg-2+deb12u2 (bookworm) |
| debian | python3.9 | < pypy3 7.3.11+dfsg-2+deb12u2 (bookworm) | pypy3 7.3.11+dfsg-2+deb12u2 (bookworm) |
| msrc | azl3_python3_3.12.0-4_on_azure_linux_3.0 | — | — |
| msrc | azl3_python3_3.12.3-1_on_azure_linux_3.0 | — | — |
| msrc | azl3_tensorflow_2.16.1-9_on_azure_linux_3.0 | — | — |
| msrc | azure_linux_3.0_arm | — | — |
| msrc | azure_linux_3.0_x64 | — | — |
| msrc | cbl2_python3_3.9.14-8_on_cbl_mariner_2.0 | — | — |
| msrc | cbl2_python3_3.9.19-1_on_cbl_mariner_2.0 | — | — |
| msrc | cbl_mariner_2.0_arm | — | — |
| msrc | cbl_mariner_2.0_x64 | — | — |
| python_software_foundation | cpython | < 3.8.19 | 3.8.19 |
| python_software_foundation | cpython | >= 3.10.0 < 3.10.14 | 3.10.14 |
| python_software_foundation | cpython | >= 3.11.0 < 3.11.8 | 3.11.8 |
| python_software_foundation | cpython | >= 3.12.0 < 3.12.1 | 3.12.1 |
| python_software_foundation | cpython | >= 3.13.0a1 < 3.13.0a3 | 3.13.0a3 |
| python_software_foundation | cpython | >= 3.9.0 < 3.9.19 | 3.9.19 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:N
osv7.8HIGH
vendor_debian7.8HIGH
vendor_msrc7.8HIGH
vendor_redhat7.8HIGH
vendor_ubuntu7.6HIGH
vendor_oracle5.6HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
python3.5, python3.6, python3.7, python3.8, python3.9, python3.10, python3.11, python3.12 vulnerabilities
osv·2024-07-11·CVSS 7.6
CVE-2015-20107 [HIGH] python3.5, python3.6, python3.7, python3.8, python3.9, python3.10, python3.11, python3.12 vulnerabilities
python3.5, python3.6, python3.7, python3.8, python3.9, python3.10, python3.11, python3.12 vulnerabilities
It was discovered that Python incorrectly handled certain inputs.
An attacker could possibly use this issue to execute arbitrary code.
This issue only affected Ubuntu 14.04 LTS and Ubuntu 18.04 LTS.
(CVE-2015-20107)
It was discovered that Python incorrectly used regular expressions
vulnerable to catastrophic backtracking. A remote attacker could possibly
use this issue to cause a denial of service. This issue only affected
Ubuntu 14.04 LTS. (CVE-2018-1060, CVE-2018-1061)
It was discovered that Python failed to initialize Expat’s hash salt. A
remote attacker could possibly use this issue to cause hash collisions,
leading to a denial of service. This issue only affected Ubuntu 14.04 L
GHSA
GHSA-797f-63wg-8chv: An issue was found in the CPython `tempfile
ghsa_unreviewed·2024-03-19
CVE-2023-6597 [HIGH] GHSA-797f-63wg-8chv: An issue was found in the CPython `tempfile
An issue was found in the CPython `tempfile.TemporaryDirectory` class affecting versions 3.12.2, 3.11.8, 3.10.13, 3.9.18, and 3.8.18 and prior.
The tempfile.TemporaryDirectory class would dereference symlinks during cleanup of permissions-related errors. This means users which can run privileged programs are potentially able to modify permissions of files referenced by symlinks in some circumstances.
OSV
CVE-2023-6597: An issue was found in the CPython `tempfile
osv·2024-03-19·CVSS 7.8
CVE-2023-6597 [HIGH] CVE-2023-6597: An issue was found in the CPython `tempfile
An issue was found in the CPython `tempfile.TemporaryDirectory` class affecting versions 3.12.1, 3.11.7, 3.10.13, 3.9.18, and 3.8.18 and prior. The tempfile.TemporaryDirectory class would dereference symlinks during cleanup of permissions-related errors. This means users which can run privileged programs are potentially able to modify permissions of files referenced by symlinks in some circumstances.
OSV
CVE-2023-6597: An issue was found in the CPython `tempfile
osv·2024-03-19·CVSS 7.8
CVE-2023-6597 [HIGH] CVE-2023-6597: An issue was found in the CPython `tempfile
An issue was found in the CPython `tempfile.TemporaryDirectory` class affecting versions 3.12.1, 3.11.7, 3.10.13, 3.9.18, and 3.8.18 and prior.
The tempfile.TemporaryDirectory class would dereference symlinks during cleanup of permissions-related errors. This means users which can run privileged programs are potentially able to modify permissions of files referenced by symlinks in some circumstances.
Oracle
Oracle Oracle Communications Risk Matrix: Configuration (Python) — CVE-2023-6597
vendor_oracle·2024-10-15·CVSS 5.6
CVE-2023-6597 [HIGH] Oracle Oracle Communications Risk Matrix: Configuration (Python) — CVE-2023-6597
Oracle Oracle Communications Risk Matrix: Configuration (Python) vulnerability
CVE: CVE-2023-6597
CVSS: 5.6
Protocol: None
Remote exploit: No
Affected versions: Local
Advisory: cpuoct2024 (OCT 2024)
Ubuntu
Python vulnerabilities
vendor_ubuntu·2024-07-11·CVSS 7.6
CVE-2021-29921 [HIGH] Python vulnerabilities
Title: Python vulnerabilities
Summary: Several security issues were fixed in Python.
It was discovered that Python incorrectly handled certain inputs.
An attacker could possibly use this issue to execute arbitrary code.
This issue only affected Ubuntu 14.04 LTS and Ubuntu 18.04 LTS.
(CVE-2015-20107)
It was discovered that Python incorrectly used regular expressions
vulnerable to catastrophic backtracking. A remote attacker could possibly
use this issue to cause a denial of service. This issue only affected
Ubuntu 14.04 LTS. (CVE-2018-1060, CVE-2018-1061)
It was discovered that Python failed to initialize Expat’s hash salt. A
remote attacker could possibly use this issue to cause hash collisions,
leading to a denial of service. This issue only affected Ubuntu 14.04 LTS.
(CVE-2018-14647)
Red Hat
python: Path traversal on tempfile.TemporaryDirectory
vendor_redhat·2024-03-19·CVSS 7.8
CVE-2023-6597 [HIGH] CWE-61 python: Path traversal on tempfile.TemporaryDirectory
python: Path traversal on tempfile.TemporaryDirectory
An issue was found in the CPython `tempfile.TemporaryDirectory` class affecting versions 3.12.1, 3.11.7, 3.10.13, 3.9.18, and 3.8.18 and prior.
The tempfile.TemporaryDirectory class would dereference symlinks during cleanup of permissions-related errors. This means users which can run privileged programs are potentially able to modify permissions of files referenced by symlinks in some circumstances.
A flaw was found in the tempfile.TemporaryDirectory class in python3/cpython3. The class may dereference symbolic links during permission-related errors, resulting in users that run privileged programs being able to modify permissions of files referenced by the symbolic link.
Statement: Versions of python36:3.6/python36 as shipped with R
Microsoft
An issue was found in the CPython `tempfile.TemporaryDirectory` class affecting versions 3.12.1 3.11.7 3.10.13 3.9.18 and 3.8.18 and prior.
The tempfile.TemporaryDirectory class would dereference sym
vendor_msrc·2024-03-12·CVSS 7.8
CVE-2023-6597 [HIGH] An issue was found in the CPython `tempfile.TemporaryDirectory` class affecting versions 3.12.1 3.11.7 3.10.13 3.9.18 and 3.8.18 and prior.
The tempfile.TemporaryDirectory class would dereference sym
An issue was found in the CPython `tempfile.TemporaryDirectory` class affecting versions 3.12.1 3.11.7 3.10.13 3.9.18 and 3.8.18 and prior.
The tempfile.TemporaryDirectory class would dereference symlinks during cleanup of permissions-related errors. This means users which can run privileged programs are potentially able to modify permissions of files referenced by symlinks in some circumstances.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is commi
Debian
CVE-2023-6597: pypy3 - An issue was found in the CPython `tempfile.TemporaryDirectory` class affecting ...
vendor_debian·2023·CVSS 7.8
CVE-2023-6597 [HIGH] CVE-2023-6597: pypy3 - An issue was found in the CPython `tempfile.TemporaryDirectory` class affecting ...
An issue was found in the CPython `tempfile.TemporaryDirectory` class affecting versions 3.12.1, 3.11.7, 3.10.13, 3.9.18, and 3.8.18 and prior. The tempfile.TemporaryDirectory class would dereference symlinks during cleanup of permissions-related errors. This means users which can run privileged programs are potentially able to modify permissions of files referenced by symlinks in some circumstances.
Scope: local
bookworm: resolved (fixed in 7.3.11+dfsg-2+deb12u2)
bullseye: resolved (fixed in 7.3.5+dfsg-2+deb11u3)
forky: resolved (fixed in 7.3.13+dfsg-1)
sid: resolved (fixed in 7.3.13+dfsg-1)
trixie: resolved (fixed in 7.3.13+dfsg-1)
No detection rules found.
No public exploits indexed.
http://www.openwall.com/lists/oss-security/2024/03/20/5https://github.com/python/cpython/commit/02a9259c717738dfe6b463c44d7e17f2b6d2cb3ahttps://github.com/python/cpython/commit/5585334d772b253a01a6730e8202ffb1607c3d25https://github.com/python/cpython/commit/6ceb8aeda504b079fef7a57b8d81472f15cdd9a5https://github.com/python/cpython/commit/81c16cd94ec38d61aa478b9a452436dc3b1b524dhttps://github.com/python/cpython/commit/8eaeefe49d179ca4908d052745e3bb8b6f238f82https://github.com/python/cpython/commit/d54e22a669ae6e987199bb5d2c69bb5a46b0083bhttps://github.com/python/cpython/issues/91133https://lists.debian.org/debian-lts-announce/2024/03/msg00025.htmlhttps://lists.fedoraproject.org/archives/list/[email protected]/message/T3IGRX54M7RNCQOXVQO5KQKTGWCOABIM/https://lists.fedoraproject.org/archives/list/[email protected]/message/U5VHWS52HGD743C47UMCSAK2A773M2YE/https://mail.python.org/archives/list/[email protected]/thread/Q5C6ATFC67K53XFV4KE45325S7NS62LD/http://www.openwall.com/lists/oss-security/2024/03/20/5https://github.com/python/cpython/commit/02a9259c717738dfe6b463c44d7e17f2b6d2cb3ahttps://github.com/python/cpython/commit/5585334d772b253a01a6730e8202ffb1607c3d25https://github.com/python/cpython/commit/6ceb8aeda504b079fef7a57b8d81472f15cdd9a5https://github.com/python/cpython/commit/81c16cd94ec38d61aa478b9a452436dc3b1b524dhttps://github.com/python/cpython/commit/8eaeefe49d179ca4908d052745e3bb8b6f238f82https://github.com/python/cpython/commit/d54e22a669ae6e987199bb5d2c69bb5a46b0083bhttps://github.com/python/cpython/issues/91133https://lists.debian.org/debian-lts-announce/2024/03/msg00025.htmlhttps://lists.debian.org/debian-lts-announce/2024/11/msg00005.htmlhttps://lists.debian.org/debian-lts-announce/2024/12/msg00000.htmlhttps://lists.fedoraproject.org/archives/list/[email protected]/message/T3IGRX54M7RNCQOXVQO5KQKTGWCOABIM/https://lists.fedoraproject.org/archives/list/[email protected]/message/U5VHWS52HGD743C47UMCSAK2A773M2YE/https://mail.python.org/archives/list/[email protected]/thread/Q5C6ATFC67K53XFV4KE45325S7NS62LD/
2024-03-19
Published