Back to Database
Status published
Critical
CVE-2014-8165
scripts/amsvis/powerpcAMS/amsnet.py in powerpc-utils-python uses the pickle Python module unsafely, which...
Vulnerability Description
scripts/amsvis/powerpcAMS/amsnet.py in powerpc-utils-python uses the pickle Python module unsafely, which allows remote attackers to execute arbitrary code via a crafted serialized object.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2014-8165
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.openwall.com/lists/oss-security/2015/02/09/4
- http://sourceforge.net/p/powerpc-utils/mailman/message/32884230/
- https://exchange.xforce.ibmcloud.com/vulnerabilities/100788
- http://rhn.redhat.com/errata/RHSA-2016-2607.html
- https://bugzilla.redhat.com/show_bug.cgi?id=1073139
- http://www.securityfocus.com/bid/72537
More from powerpc-utils project
View All →Affected Vendor
powerpc-utils project
View all reports →Affected Software
powerpc-utils
Vulnerable Versions:
Unknown
Timeline
Official Publish:
February 19th, 2015
Last Modified:
August 6th, 2024
Added to House:
July 19th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.