CVE-2014-0485
02.09.2014, 14:55
S3QL 1.18.1 and earlier uses the pickle Python module unsafely, which allows remote attackers to execute arbitrary code via a crafted serialized object in (1) common.py or (2) local.py in backends/.
| Vendor | Product | Version |
|---|---|---|
| s3ql_project | s3ql | 𝑥 ≤ 1.18.1 |
| s3ql_project | s3ql | 1.17 |
| s3ql_project | s3ql | 1.18 |
𝑥
= Vulnerable software versions
Ubuntu Releases
References