Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-6w46-j5rx-g56g | pytest has vulnerable tmpdir handling |
Fri, 23 Jan 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Pytest
Pytest py |
|
| Vendors & Products |
Pytest
Pytest py |
Fri, 23 Jan 2026 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | pytest: pytest: Denial of Service or Privilege Escalation via insecure temporary directory handling | |
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Thu, 22 Jan 2026 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 22 Jan 2026 05:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | pytest through 9.0.2 on UNIX relies on directories with the /tmp/pytest-of-{user} name pattern, which allows local users to cause a denial of service or possibly gain privileges. | |
| Weaknesses | CWE-379 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-01-22T12:26:39.653Z
Reserved: 2026-01-22T04:59:16.985Z
Link: CVE-2025-71176
Updated: 2026-01-22T12:26:35.302Z
Status : Deferred
Published: 2026-01-22T05:16:17.577
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-71176
OpenCVE Enrichment
Updated: 2026-01-22T10:07:54Z
Github GHSA