[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249966

 
 

909

 
 

195636

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2020:2699-1 -- SLES python3

ID: oval:org.secpod.oval:def:89000180Date: (C)2021-02-23   (M)2024-04-17
Class: PATCHFamily: unix




This update for python3 fixes the following issues: - CVE-2019-20907: Fixed denial of service by avoiding possible infinite loop in specifically crafted tarball . - CVE-2020-14422: Fixed an improper computation of hash values in the IPv4Interface and IPv6Interface could have led to denial of service . - CVE-2019-16935: Fixed a reflected XSS in python/Lib/DocXMLRPCServer.py . - CVE-2019-9947: Fixed an issue in urllib2 which allowed CRLF injection if the attacker controls a url parameter . - If the locale is quot;Cquot;, coerce it to C.UTF-8 .

Platform:
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP5
SUSE Linux Enterprise Server 12 SP4
Product:
python3
Reference:
SUSE-SU-2020:2699-1
CVE-2018-14647
CVE-2018-20852
CVE-2019-16056
CVE-2019-16935
CVE-2019-20907
CVE-2019-9947
CVE-2020-14422
CVE    7
CVE-2020-14422
CVE-2018-14647
CVE-2019-16935
CVE-2019-20907
...
CPE    6
cpe:/o:suse:suse_linux_enterprise_server:12:sp5
cpe:/o:suse:suse_linux_enterprise_server:12:sp3
cpe:/o:suse:suse_linux_enterprise_server:12:sp4
cpe:/o:suse:suse_linux_enterprise_server:12:sp2
...

© SecPod Technologies