{"id":"UBUNTU-CVE-2024-50636","details":"PyMOL 2.5.0 contains a vulnerability in its \"Run Script\" function, which allows the execution of arbitrary Python code embedded within .PYM files. Attackers can craft a malicious .PYM file containing a Python reverse shell payload and exploit the function to achieve Remote Command Execution (RCE). This vulnerability arises because PyMOL treats .PYM files as Python scripts without properly validating or restricting the commands within the script, enabling attackers to run unauthorized commands in the context of the user running the application.","modified":"2026-05-20T16:19:23.660627218Z","published":"2024-11-11T23:15:00Z","upstream":["CVE-2024-50636"],"references":[{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2024-50636"},{"type":"REPORT","url":"https://www.cve.org/CVERecord?id=CVE-2024-50636"},{"type":"REPORT","url":"https://github.com/schrodinger/pymol-open-source/issues/405"},{"type":"REPORT","url":"https://github.com/yamerooo123/CVE/blob/main/CVE-2024-50636/Description.md"},{"type":"REPORT","url":"https://youtu.be/SWnN_a1tUNc"}],"affected":[{"package":{"name":"pymol","ecosystem":"Ubuntu:16.04:LTS","purl":"pkg:deb/ubuntu/pymol?arch=source&distro=xenial"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["1.7.2.1-2","1.7.2.1-2.1","1.7.2.1-2.1build1","1.7.2.1-2.2"],"ecosystem_specific":{"binaries":[{"binary_name":"pymol","binary_version":"1.7.2.1-2.2"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2024/UBUNTU-CVE-2024-50636.json"}},{"package":{"name":"pymol","ecosystem":"Ubuntu:18.04:LTS","purl":"pkg:deb/ubuntu/pymol?arch=source&distro=bionic"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["1.8.4.0+dfsg-1build1"],"ecosystem_specific":{"binaries":[{"binary_name":"pymol","binary_version":"1.8.4.0+dfsg-1build1"},{"binary_name":"pymol-data","binary_version":"1.8.4.0+dfsg-1build1"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2024/UBUNTU-CVE-2024-50636.json"}},{"package":{"name":"pymol","ecosystem":"Ubuntu:20.04:LTS","purl":"pkg:deb/ubuntu/pymol?arch=source&distro=focal"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["2.2.0+dfsg-4","2.2.0+dfsg-4build1","2.3.0+dfsg-1","2.3.0+dfsg-1build1"],"ecosystem_specific":{"binaries":[{"binary_name":"pymol","binary_version":"2.3.0+dfsg-1build1"},{"binary_version":"2.3.0+dfsg-1build1","binary_name":"pymol-data"},{"binary_version":"2.3.0+dfsg-1build1","binary_name":"python3-pymol"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2024/UBUNTU-CVE-2024-50636.json"}},{"package":{"name":"pymol","ecosystem":"Ubuntu:22.04:LTS","purl":"pkg:deb/ubuntu/pymol?arch=source&distro=jammy"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["2.4.0+dfsg-3","2.4.0+dfsg-3build2","2.5.0+dfsg-1","2.5.0+dfsg-1build1"],"ecosystem_specific":{"binaries":[{"binary_name":"pymol","binary_version":"2.5.0+dfsg-1build1"},{"binary_name":"pymol-data","binary_version":"2.5.0+dfsg-1build1"},{"binary_name":"python3-pymol","binary_version":"2.5.0+dfsg-1build1"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2024/UBUNTU-CVE-2024-50636.json"}},{"package":{"name":"pymol","ecosystem":"Ubuntu:24.04:LTS","purl":"pkg:deb/ubuntu/pymol?arch=source&distro=noble"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["2.5.0+dfsg-1build3","2.5.0+dfsg-1build4","2.5.0+dfsg-1build5","2.5.0+dfsg-1build6"],"ecosystem_specific":{"binaries":[{"binary_name":"pymol","binary_version":"2.5.0+dfsg-1build6"},{"binary_name":"pymol-data","binary_version":"2.5.0+dfsg-1build6"},{"binary_name":"python3-pymol","binary_version":"2.5.0+dfsg-1build6"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2024/UBUNTU-CVE-2024-50636.json"}},{"package":{"name":"pymol","ecosystem":"Ubuntu:25.10","purl":"pkg:deb/ubuntu/pymol?arch=source&distro=questing"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["3.1.0+dfsg-1","3.1.0+dfsg-1build1"],"ecosystem_specific":{"binaries":[{"binary_name":"pymol","binary_version":"3.1.0+dfsg-1build1"},{"binary_name":"pymol-data","binary_version":"3.1.0+dfsg-1build1"},{"binary_version":"3.1.0+dfsg-1build1","binary_name":"python3-pymol"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2024/UBUNTU-CVE-2024-50636.json"}},{"package":{"name":"pymol","ecosystem":"Ubuntu:26.04:LTS","purl":"pkg:deb/ubuntu/pymol?arch=source&distro=resolute"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["3.1.0+dfsg-1build1","3.1.0+dfsg-1build2","3.1.0+dfsg-1build3"],"ecosystem_specific":{"binaries":[{"binary_name":"pymol","binary_version":"3.1.0+dfsg-1build3"},{"binary_version":"3.1.0+dfsg-1build3","binary_name":"pymol-data"},{"binary_name":"python3-pymol","binary_version":"3.1.0+dfsg-1build3"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2024/UBUNTU-CVE-2024-50636.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"},{"type":"Ubuntu","score":"medium"}]}