CVE-2014-1839: Logilab Logilab-Common

Medium severity, CVSS 4.4. EPSS: 0.4% chance of exploitation in the next 30 days.

The Execute class in shellutils in logilab-commons before 0.61.0 uses tempfile.mktemp, which allows local users to have an unspecified impact by pre-creating the temporary file.

Affected products

  • Logilab Logilab-Common: up to and including 0.60.0
  • Opensuse Opensuse: version 12.3 only; version 13.1 only

Published 2014-03-11. Last modified 2026-06-17.