pytest through 9.0.2 on UNIX relies on directories with the /tmp/pytest-of-{user} name pattern, which allows local users to cause a denial of service or possibly gain privileges.
{ "binaries": [ { "binary_version": "2.8.7-4", "binary_name": "python-pytest" }, { "binary_name": "python3-pytest", "binary_version": "2.8.7-4" } ] }
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2025/UBUNTU-CVE-2025-71176.json"
{ "binaries": [ { "binary_name": "pypy-pytest", "binary_version": "3.3.2-2" }, { "binary_name": "python-pytest", "binary_version": "3.3.2-2" }, { "binary_name": "python3-pytest", "binary_version": "3.3.2-2" } ] }
{ "binaries": [ { "binary_version": "4.6.9-1", "binary_name": "pypy-pytest" }, { "binary_version": "4.6.9-1", "binary_name": "python-pytest" }, { "binary_name": "python3-pytest", "binary_version": "4.6.9-1" } ] }
{ "binaries": [ { "binary_version": "6.2.5-1ubuntu2", "binary_name": "python3-pytest" } ] }
{ "binaries": [ { "binary_version": "7.4.4-1", "binary_name": "python3-pytest" } ] }
{ "binaries": [ { "binary_name": "python3-pytest", "binary_version": "8.3.5-2" } ] }
{ "binaries": [ { "binary_name": "python3-pytest", "binary_version": "9.0.2-4" }, { "binary_name": "python3-pytest-subtests", "binary_version": "0.15.0++9.0.2-4" } ] }