AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2014-2667

LOW · CVSS 3.3 EPSS 0.36%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2014-11-16 · Last synced 2026-08-04

CyberRota Analysis

This is a low severity vulnerability with a CVSS score of 3.3. See the original NVD description below for full technical details.

CVE
CVE-2014-2667
Severity
LOW
CVSS
3.3
EPSS
0.36%

Original NVD Description

Race condition in the _get_masked_mode function in Lib/os.py in Python 3.2 through 3.5, when exist_ok is set to true and multiple threads are used, might allow local users to bypass intended file permissions by leveraging a separate application vulnerability before the umask has been set to the expected value.