pytest through 9.0.2 on UNIX relies on directories with the /tmp/pytest-of-{user} name pattern, which allows local users to cause a denial of service or possibly gain privileges.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-01-22 05:16
Updated : 2026-01-26 15:04
NVD link : CVE-2025-71176
Mitre link : CVE-2025-71176
CVE.ORG link : CVE-2025-71176
JSON object : View
Products Affected
No product.
CWE
CWE-379
Creation of Temporary File in Directory with Insecure Permissions
