CVE-2013-2217: Jeff Ortel Suds

Low severity, CVSS 1.2. EPSS: 0.6% chance of exploitation in the next 30 days.

cache.py in Suds 0.4, when tempdir is set to None, allows local users to redirect SOAP queries and possibly have other unspecified impact via a symlink attack on a cache file with a predictable name in /tmp/suds/.

Affected products

  • Jeff Ortel Suds: version 0.4 only
  • Opensuse Opensuse: version 12.2 only; version 12.3 only
  • Red Hat Enterprise Linux: version 5 only; version 6.0 only

Published 2013-09-23. Last modified 2026-06-16.