CyberRota Analysis
This is a low severity vulnerability with a CVSS score of 2.1. Public exploit code or proof-of-concept references have been detected in its references. It may lead to a denial-of-service condition.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
GitHub PoC Links
Note: these links are listed for security research and verification purposes only.
CVE
CVE-2014-8991
Severity
LOW
CVSS
2.1
EPSS
0.39%
Original NVD Description
pip 1.3 through 1.5.6 allows local users to cause a denial of service (prevention of package installation) by creating a /tmp/pip-build-* file for another user.