CVE-2014-2387: Medium severity pen project pen vulnerability
Published Dec 13, 2019
·Updated
Pen 0.18.0 has Insecure Temporary File Creation vulnerabilities
Affected Software
6 affected componentsFixes available
debian/pen
0.34.1-20.34.1-3
Pen Project Pen=0.18.0
openSUSE openSUSE=13.1
Debian Debian Linux=8.0
Debian Debian Linux=9.0
Debian Debian Linux=10.0
Event History
Dec 13, 2019
CVE Published
via MITRE·01:12 PM
Data Sourced
via MITRE·01:12 PM
Description
Frequently Asked Questions
1
What is CVE-2014-2387?
CVE-2014-2387 refers to the Pen 0.18.0 Insecure Temporary File Creation vulnerabilities.
2
What software is affected by CVE-2014-2387?
Pen 0.18.0, Opensuse 13.1, Debian Debian Linux 8.0, Debian Debian Linux 9.0, and Debian Debian Linux 10.0 are affected by CVE-2014-2387.
3
What is the severity of CVE-2014-2387?
The severity of CVE-2014-2387 is medium with a CVSS score of 4.4.
4
How can I fix the vulnerabilities associated with CVE-2014-2387?
To fix the vulnerabilities associated with CVE-2014-2387, update to Pen version 0.34.1-1 or 0.34.1-2 if you are using the Debian package.
5
Where can I find more information about CVE-2014-2387?
More information about CVE-2014-2387 can be found at the following references: [1] [2] [3].