This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor Pocoo First view 2014-05-19
Product jinja2 Last view 2014-05-19
Version 2.6 Type Application
Update *  
Edition *  
Language *  
Sofware Edition *  
Target Software *  
Target Hardware *  
Other *  
 
CPE Product cpe:2.3:a:pocoo:jinja2

Activity : Overall

Related : CVE

  Date Alert Description
4.4 2014-05-19 CVE-2014-1402

The default configuration for bccache.FileSystemBytecodeCache in Jinja2 before 2.7.2 does not properly create temporary files, which allows local users to gain privileges via a crafted .cache file with a name starting with __jinja2_ in /tmp.

CWE : Common Weakness Enumeration

%idName
100% (1) CWE-264 Permissions, Privileges, and Access Controls

Nessus® Vulnerability Scanner

id Description
2015-01-19 Name: The remote Solaris system is missing a security patch for third-party software.
File: solaris11_jinja2_20141216.nasl - Type: ACT_GATHER_INFO
2014-10-12 Name: The remote Amazon Linux AMI host is missing a security update.
File: ala_ALAS-2014-371.nasl - Type: ACT_GATHER_INFO
2014-08-30 Name: The remote Gentoo host is missing one or more security-related patches.
File: gentoo_GLSA-201408-13.nasl - Type: ACT_GATHER_INFO
2014-07-25 Name: The remote Ubuntu host is missing one or more security-related patches.
File: ubuntu_USN-2301-1.nasl - Type: ACT_GATHER_INFO
2014-06-23 Name: The remote Fedora host is missing a security update.
File: fedora_2014-7166.nasl - Type: ACT_GATHER_INFO
2014-06-23 Name: The remote Fedora host is missing a security update.
File: fedora_2014-7399.nasl - Type: ACT_GATHER_INFO
2014-06-12 Name: The remote CentOS host is missing a security update.
File: centos_RHSA-2014-0747.nasl - Type: ACT_GATHER_INFO
2014-06-12 Name: The remote Oracle Linux host is missing a security update.
File: oraclelinux_ELSA-2014-0747.nasl - Type: ACT_GATHER_INFO
2014-06-12 Name: The remote Red Hat host is missing one or more security updates.
File: redhat-RHSA-2014-0747.nasl - Type: ACT_GATHER_INFO
2014-06-12 Name: The remote Scientific Linux host is missing one or more security updates.
File: sl_20140611_python_jinja2_on_SL6_x.nasl - Type: ACT_GATHER_INFO
2014-05-19 Name: The remote Mandriva Linux host is missing a security update.
File: mandriva_MDVSA-2014-096.nasl - Type: ACT_GATHER_INFO