• caglararli@hotmail.com
  • 05386281520

CVE-2023-6507 | Python CPython up to 3.12.0/3.13.0a2 on Posix Subprocess Module exec extra_groups privileges management

Çağlar Arlı      -    24 Views

CVE-2023-6507 | Python CPython up to 3.12.0/3.13.0a2 on Posix Subprocess Module exec extra_groups privileges management

A vulnerability, which was classified as critical, was found in Python CPython up to 3.12.0/3.13.0a2 on Posix. This affects the function exec of the component Subprocess Module. The manipulation of the argument extra_groups leads to improper privilege management. This vulnerability is uniquely identified as CVE-2023-6507. Access to the local network is required for this attack. There is no exploit available. It is recommended to upgrade the affected component.