Vulnerability Details CVE-2014-2277
The make_temporary_filename function in perltidy 20120701-1 and earlier allows local users to obtain sensitive information or write to arbitrary files via a symlink attack, related to use of the tmpnam function.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 18.9%
CVSS Severity
CVSS v3 Score 7.1
CVSS v2 Score 3.6
Products affected by CVE-2014-2277
-
cpe:2.3:a:perltidy_project:perltidy:2001-03-03
-
cpe:2.3:a:perltidy_project:perltidy:2001-03-23
-
cpe:2.3:a:perltidy_project:perltidy:2001-03-28
-
cpe:2.3:a:perltidy_project:perltidy:2001-04-04
-
cpe:2.3:a:perltidy_project:perltidy:2001-04-06
-
cpe:2.3:a:perltidy_project:perltidy:2001-06-08
-
cpe:2.3:a:perltidy_project:perltidy:2001-06-17
-
cpe:2.3:a:perltidy_project:perltidy:2001-07-01
-
cpe:2.3:a:perltidy_project:perltidy:2001-07-02
-
cpe:2.3:a:perltidy_project:perltidy:2001-07-23
-
cpe:2.3:a:perltidy_project:perltidy:2001-07-31
-
cpe:2.3:a:perltidy_project:perltidy:2001-09-03
-
cpe:2.3:a:perltidy_project:perltidy:2001-10-16
-
cpe:2.3:a:perltidy_project:perltidy:2001-10-20
-
cpe:2.3:a:perltidy_project:perltidy:2001-11-28
-
cpe:2.3:a:perltidy_project:perltidy:2001-12-31
-
cpe:2.3:a:perltidy_project:perltidy:2002-02-25
-
cpe:2.3:a:perltidy_project:perltidy:2002-04-16
-
cpe:2.3:a:perltidy_project:perltidy:2002-04-25
-
cpe:2.3:a:perltidy_project:perltidy:2002-08-26
-
cpe:2.3:a:perltidy_project:perltidy:2002-09-22
-
cpe:2.3:a:perltidy_project:perltidy:2002-11-06
-
cpe:2.3:a:perltidy_project:perltidy:2002-11-30
-
cpe:2.3:a:perltidy_project:perltidy:2003-07-26
-
cpe:2.3:a:perltidy_project:perltidy:2003-10-21
-
cpe:2.3:a:perltidy_project:perltidy:2006-06-14
-
cpe:2.3:a:perltidy_project:perltidy:2006-07-19
-
cpe:2.3:a:perltidy_project:perltidy:2007-04-24
-
cpe:2.3:a:perltidy_project:perltidy:2007-05-04
-
cpe:2.3:a:perltidy_project:perltidy:2007-05-08
-
cpe:2.3:a:perltidy_project:perltidy:2007-08-01
-
cpe:2.3:a:perltidy_project:perltidy:2007-12-05
-
cpe:2.3:a:perltidy_project:perltidy:2009-06-16
-
cpe:2.3:a:perltidy_project:perltidy:2010-12-17
-
cpe:2.3:a:perltidy_project:perltidy:2012-06-19
-
cpe:2.3:a:perltidy_project:perltidy:2012-07-01
-
cpe:2.3:a:perltidy_project:perltidy:2012-07-01-1