<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:webfeeds="http://webfeeds.org/rss/1.0"><channel><title>Cpe:2.3:a:python:python:3.14.0:alpha1:*:*:*:*:*:* - CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/cpes/cpe2.3apythonpython3.14.0alpha1/</link><description>Trending threats, MITRE ATT&amp;CK coverage, and detection metadata. Fed continuously.</description><generator>Hugo</generator><language>en</language><managingEditor>hello@craftedsignal.io</managingEditor><webMaster>hello@craftedsignal.io</webMaster><lastBuildDate>Wed, 30 Sep 2026 16:23:12 +0000</lastBuildDate><atom:link href="https://feed.craftedsignal.io/cpes/cpe2.3apythonpython3.14.0alpha1/feed.xml" rel="self" type="application/rss+xml"/><image><url>https://feed.craftedsignal.io/favicon-32x32.png</url><title>CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/</link><width>32</width><height>32</height></image><webfeeds:icon>https://feed.craftedsignal.io/favicon.svg</webfeeds:icon><item><title>CPython tempfile Module Symlink Vulnerability</title><link>https://feed.craftedsignal.io/briefs/2026-09-cpython-tempfile-vulnerability/</link><pubDate>Wed, 30 Sep 2026 16:23:12 +0000</pubDate><author>hello@craftedsignal.io</author><guid isPermaLink="true">https://feed.craftedsignal.io/briefs/2026-09-cpython-tempfile-vulnerability/</guid><description>A vulnerability in the CPython tempfile module allows a local attacker to perform symlink attacks, potentially leading to unauthorized file manipulation or security constraint bypasses.</description><content:encoded><![CDATA[<p>The Python Software Foundation has identified a vulnerability in the CPython tempfile module (CVE-2024-9287) that affects the way temporary files are created. A local attacker can exploit this flaw by leveraging symbolic link (symlink) race conditions during the file creation process. By placing a symlink at the expected location of a temporary file, an attacker may force the application or process to perform operations on unintended files. This can lead to unauthorized file manipulation, privilege escalation, or the bypass of security restrictions depending on the privileges of the executing application. This issue is relevant for environments where multiple users or processes with different privilege levels share local storage.</p>
<h2 id="impact">Impact</h2>
<p>Successful exploitation allows local attackers to perform file manipulation outside of intended directories. This may result in the overwriting of sensitive configuration files, log tampering, or potential privilege escalation if the affected process runs with elevated system permissions. This vulnerability impacts all platforms including Windows, Linux, and macOS.</p>
<h2 id="recommendation">Recommendation</h2>
<p>Prioritize the identification of applications in your environment that utilize the CPython tempfile module to create files in shared directories. Consult the Python Software Foundation documentation for patched versions of CPython and apply updates to all affected systems. Ensure that internal applications follow secure coding practices by avoiding predictable temporary file paths and utilizing secure creation methods such as those provided by the updated tempfile library.</p>
]]></content:encoded><category domain="severity">medium</category><category domain="type">advisory</category></item></channel></rss>