Unrated severityNVD Advisory· Published Sep 2, 2014· Updated May 6, 2026
CVE-2014-0485
CVE-2014-0485
Description
S3QL 1.18.1 and earlier uses the pickle Python module unsafely, which allows remote attackers to execute arbitrary code via a crafted serialized object in (1) common.py or (2) local.py in backends/.
Affected products
3cpe:2.3:a:s3ql_project:s3ql:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:s3ql_project:s3ql:*:*:*:*:*:*:*:*range: <=1.18.1
- cpe:2.3:a:s3ql_project:s3ql:1.17:*:*:*:*:*:*:*
- cpe:2.3:a:s3ql_project:s3ql:1.18:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.