VDB
CVE-2011-4617
CVE-2011-4617
PUBLISHED
CVSS 1.2000000476837158 LOW
Virtualenv Allows Symlink Attack on /tmp/
EPSS 0.04% · 11.6th percentile
Risk Scores
CVSS 2.0
1.2000000476837158
EPSS Score
0.04%
11.6th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| python | virtualenv | 0.8.1, 1.4.1, 1.3.3 |
| PyPI | virtualenv | 0 |
| n/a | n/a | n/a |
Timeline
- Dec 31, 2011 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 2, 2023 EPSS Score
- May 25, 2023 EPSS Score
References
- 47240 third-party-advisory
- https://bitbucket.org/ianb/virtualenv/changeset/8be37c509fe5 url
- [oss-security] 20111219 Re: CVE id request: python-virtualenv mailing-list
- [oss-security] 20111219 CVE id request: python-virtualenv mailing-list
- FEDORA-2011-17289 vendor-advisory
- FEDORA-2011-17341 vendor-advisory
- [oss-security] 20111219 Re: CVE id request: python-virtualenv mailing-list
- https://nvd.nist.gov/vuln/detail/CVE-2011-4617 advisory
- https://github.com/pypa/virtualenv/commit/68075ad9ededf7df2c46d385f836c13b729de2ca url
- https://github.com/pypa/advisory-database/tree/main/vulns/virtualenv/PYSEC-2011-23.yaml url
- https://github.com/pypa/virtualenv package
- https://web.archive.org/web/20200228151935/https://bitbucket.org/ianb/virtualenv/commits/8be37c509fe5 url