opensuse-su-2024:10536-1
Vulnerability from csaf_opensuse
Published
2024-06-15 00:00
Modified
2024-06-15 00:00
Summary
libpython2_7-1_0-2.7.12-1.4 on GA media
Notes
Title of the patch
libpython2_7-1_0-2.7.12-1.4 on GA media
Description of the patch
These are all security issues fixed in the libpython2_7-1_0-2.7.12-1.4 package on the GA media of openSUSE Tumbleweed.
Patchnames
openSUSE-Tumbleweed-2024-10536
Terms of use
CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).
{ "document": { "aggregate_severity": { "namespace": "https://www.suse.com/support/security/rating/", "text": "moderate" }, "category": "csaf_security_advisory", "csaf_version": "2.0", "distribution": { "text": "Copyright 2024 SUSE LLC. All rights reserved.", "tlp": { "label": "WHITE", "url": "https://www.first.org/tlp/" } }, "lang": "en", "notes": [ { "category": "summary", "text": "libpython2_7-1_0-2.7.12-1.4 on GA media", "title": "Title of the patch" }, { "category": "description", "text": "These are all security issues fixed in the libpython2_7-1_0-2.7.12-1.4 package on the GA media of openSUSE Tumbleweed.", "title": "Description of the patch" }, { "category": "details", "text": "openSUSE-Tumbleweed-2024-10536", "title": "Patchnames" }, { "category": "legal_disclaimer", "text": "CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).", "title": "Terms of use" } ], "publisher": { "category": "vendor", "contact_details": "https://www.suse.com/support/security/contact/", "name": "SUSE Product Security Team", "namespace": "https://www.suse.com/" }, "references": [ { "category": "external", "summary": "SUSE ratings", "url": "https://www.suse.com/support/security/rating/" }, { "category": "self", "summary": "URL of this CSAF notice", "url": "https://ftp.suse.com/pub/projects/security/csaf/opensuse-su-2024_10536-1.json" }, { "category": "self", "summary": "SUSE CVE CVE-2011-1521 page", "url": "https://www.suse.com/security/cve/CVE-2011-1521/" }, { "category": "self", "summary": "SUSE CVE CVE-2011-3389 page", "url": "https://www.suse.com/security/cve/CVE-2011-3389/" }, { "category": "self", "summary": "SUSE CVE CVE-2011-4944 page", "url": "https://www.suse.com/security/cve/CVE-2011-4944/" }, { "category": "self", "summary": "SUSE CVE CVE-2012-0845 page", "url": "https://www.suse.com/security/cve/CVE-2012-0845/" }, { "category": "self", "summary": "SUSE CVE CVE-2012-1150 page", "url": "https://www.suse.com/security/cve/CVE-2012-1150/" }, { "category": "self", "summary": "SUSE CVE CVE-2013-1752 page", "url": "https://www.suse.com/security/cve/CVE-2013-1752/" }, { "category": "self", "summary": "SUSE CVE CVE-2013-1753 page", "url": "https://www.suse.com/security/cve/CVE-2013-1753/" }, { "category": "self", "summary": "SUSE CVE CVE-2013-4238 page", "url": "https://www.suse.com/security/cve/CVE-2013-4238/" }, { "category": "self", "summary": "SUSE CVE CVE-2014-1912 page", "url": "https://www.suse.com/security/cve/CVE-2014-1912/" }, { "category": "self", "summary": "SUSE CVE CVE-2014-4650 page", "url": "https://www.suse.com/security/cve/CVE-2014-4650/" }, { "category": "self", "summary": "SUSE CVE CVE-2014-7185 page", "url": "https://www.suse.com/security/cve/CVE-2014-7185/" }, { "category": "self", "summary": "SUSE CVE CVE-2016-0772 page", "url": "https://www.suse.com/security/cve/CVE-2016-0772/" }, { "category": "self", "summary": "SUSE CVE CVE-2016-5636 page", "url": "https://www.suse.com/security/cve/CVE-2016-5636/" }, { "category": "self", "summary": "SUSE CVE CVE-2016-5699 page", "url": "https://www.suse.com/security/cve/CVE-2016-5699/" } ], "title": "libpython2_7-1_0-2.7.12-1.4 on GA media", "tracking": { "current_release_date": "2024-06-15T00:00:00Z", "generator": { "date": "2024-06-15T00:00:00Z", "engine": { "name": "cve-database.git:bin/generate-csaf.pl", "version": "1" } }, "id": "openSUSE-SU-2024:10536-1", "initial_release_date": "2024-06-15T00:00:00Z", "revision_history": [ { "date": "2024-06-15T00:00:00Z", "number": "1", "summary": "Current version" } ], "status": "final", "version": "1" } }, "product_tree": { "branches": [ { "branches": [ { "branches": [ { "category": "product_version", "name": "libpython2_7-1_0-2.7.12-1.4.aarch64", "product": { "name": "libpython2_7-1_0-2.7.12-1.4.aarch64", "product_id": "libpython2_7-1_0-2.7.12-1.4.aarch64" } }, { "category": "product_version", "name": "libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "product": { "name": "libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "product_id": "libpython2_7-1_0-32bit-2.7.12-1.4.aarch64" } }, { "category": "product_version", "name": "python-base-2.7.12-1.4.aarch64", "product": { "name": "python-base-2.7.12-1.4.aarch64", "product_id": "python-base-2.7.12-1.4.aarch64" } }, { "category": "product_version", "name": "python-base-32bit-2.7.12-1.4.aarch64", "product": { "name": "python-base-32bit-2.7.12-1.4.aarch64", "product_id": "python-base-32bit-2.7.12-1.4.aarch64" } }, { "category": "product_version", "name": "python-devel-2.7.12-1.4.aarch64", "product": { "name": "python-devel-2.7.12-1.4.aarch64", "product_id": "python-devel-2.7.12-1.4.aarch64" } }, { "category": "product_version", "name": "python-xml-2.7.12-1.4.aarch64", "product": { "name": "python-xml-2.7.12-1.4.aarch64", "product_id": "python-xml-2.7.12-1.4.aarch64" } } ], "category": "architecture", "name": "aarch64" }, { "branches": [ { "category": "product_version", "name": "libpython2_7-1_0-2.7.12-1.4.ppc64le", "product": { "name": "libpython2_7-1_0-2.7.12-1.4.ppc64le", "product_id": "libpython2_7-1_0-2.7.12-1.4.ppc64le" } }, { "category": "product_version", "name": "libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "product": { "name": "libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "product_id": "libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le" } }, { "category": "product_version", "name": "python-base-2.7.12-1.4.ppc64le", "product": { "name": "python-base-2.7.12-1.4.ppc64le", "product_id": "python-base-2.7.12-1.4.ppc64le" } }, { "category": "product_version", "name": "python-base-32bit-2.7.12-1.4.ppc64le", "product": { "name": "python-base-32bit-2.7.12-1.4.ppc64le", "product_id": "python-base-32bit-2.7.12-1.4.ppc64le" } }, { "category": "product_version", "name": "python-devel-2.7.12-1.4.ppc64le", "product": { "name": "python-devel-2.7.12-1.4.ppc64le", "product_id": "python-devel-2.7.12-1.4.ppc64le" } }, { "category": "product_version", "name": "python-xml-2.7.12-1.4.ppc64le", "product": { "name": "python-xml-2.7.12-1.4.ppc64le", "product_id": "python-xml-2.7.12-1.4.ppc64le" } } ], "category": "architecture", "name": "ppc64le" }, { "branches": [ { "category": "product_version", "name": "libpython2_7-1_0-2.7.12-1.4.s390x", "product": { "name": "libpython2_7-1_0-2.7.12-1.4.s390x", "product_id": "libpython2_7-1_0-2.7.12-1.4.s390x" } }, { "category": "product_version", "name": "libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "product": { "name": "libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "product_id": "libpython2_7-1_0-32bit-2.7.12-1.4.s390x" } }, { "category": "product_version", "name": "python-base-2.7.12-1.4.s390x", "product": { "name": "python-base-2.7.12-1.4.s390x", "product_id": "python-base-2.7.12-1.4.s390x" } }, { "category": "product_version", "name": "python-base-32bit-2.7.12-1.4.s390x", "product": { "name": "python-base-32bit-2.7.12-1.4.s390x", "product_id": "python-base-32bit-2.7.12-1.4.s390x" } }, { "category": "product_version", "name": "python-devel-2.7.12-1.4.s390x", "product": { "name": "python-devel-2.7.12-1.4.s390x", "product_id": "python-devel-2.7.12-1.4.s390x" } }, { "category": "product_version", "name": "python-xml-2.7.12-1.4.s390x", "product": { "name": "python-xml-2.7.12-1.4.s390x", "product_id": "python-xml-2.7.12-1.4.s390x" } } ], "category": "architecture", "name": "s390x" }, { "branches": [ { "category": "product_version", "name": "libpython2_7-1_0-2.7.12-1.4.x86_64", "product": { "name": "libpython2_7-1_0-2.7.12-1.4.x86_64", "product_id": "libpython2_7-1_0-2.7.12-1.4.x86_64" } }, { "category": "product_version", "name": "libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "product": { "name": "libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "product_id": "libpython2_7-1_0-32bit-2.7.12-1.4.x86_64" } }, { "category": "product_version", "name": "python-base-2.7.12-1.4.x86_64", "product": { "name": "python-base-2.7.12-1.4.x86_64", "product_id": "python-base-2.7.12-1.4.x86_64" } }, { "category": "product_version", "name": "python-base-32bit-2.7.12-1.4.x86_64", "product": { "name": "python-base-32bit-2.7.12-1.4.x86_64", "product_id": "python-base-32bit-2.7.12-1.4.x86_64" } }, { "category": "product_version", "name": "python-devel-2.7.12-1.4.x86_64", "product": { "name": "python-devel-2.7.12-1.4.x86_64", "product_id": "python-devel-2.7.12-1.4.x86_64" } }, { "category": "product_version", "name": "python-xml-2.7.12-1.4.x86_64", "product": { "name": "python-xml-2.7.12-1.4.x86_64", "product_id": "python-xml-2.7.12-1.4.x86_64" } } ], "category": "architecture", "name": "x86_64" }, { "branches": [ { "category": "product_name", "name": "openSUSE Tumbleweed", "product": { "name": "openSUSE Tumbleweed", "product_id": "openSUSE Tumbleweed", "product_identification_helper": { "cpe": "cpe:/o:opensuse:tumbleweed" } } } ], "category": "product_family", "name": "SUSE Linux Enterprise" } ], "category": "vendor", "name": "SUSE" } ], "relationships": [ { "category": "default_component_of", "full_product_name": { "name": "libpython2_7-1_0-2.7.12-1.4.aarch64 as component of openSUSE Tumbleweed", "product_id": "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64" }, "product_reference": "libpython2_7-1_0-2.7.12-1.4.aarch64", "relates_to_product_reference": "openSUSE Tumbleweed" }, { "category": "default_component_of", "full_product_name": { "name": "libpython2_7-1_0-2.7.12-1.4.ppc64le as component of openSUSE Tumbleweed", "product_id": "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le" }, "product_reference": "libpython2_7-1_0-2.7.12-1.4.ppc64le", "relates_to_product_reference": "openSUSE Tumbleweed" }, { "category": "default_component_of", "full_product_name": { "name": "libpython2_7-1_0-2.7.12-1.4.s390x as component of openSUSE Tumbleweed", "product_id": "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x" }, "product_reference": "libpython2_7-1_0-2.7.12-1.4.s390x", "relates_to_product_reference": "openSUSE Tumbleweed" }, { "category": "default_component_of", "full_product_name": { "name": "libpython2_7-1_0-2.7.12-1.4.x86_64 as component of openSUSE Tumbleweed", "product_id": "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64" }, "product_reference": "libpython2_7-1_0-2.7.12-1.4.x86_64", "relates_to_product_reference": "openSUSE Tumbleweed" }, { "category": "default_component_of", "full_product_name": { "name": "libpython2_7-1_0-32bit-2.7.12-1.4.aarch64 as component of openSUSE Tumbleweed", "product_id": "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64" }, "product_reference": "libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "relates_to_product_reference": "openSUSE Tumbleweed" }, { "category": "default_component_of", "full_product_name": { "name": "libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le as component of openSUSE Tumbleweed", "product_id": "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le" }, "product_reference": "libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "relates_to_product_reference": "openSUSE Tumbleweed" }, { "category": "default_component_of", "full_product_name": { "name": "libpython2_7-1_0-32bit-2.7.12-1.4.s390x as component of openSUSE Tumbleweed", "product_id": "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x" }, "product_reference": "libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "relates_to_product_reference": "openSUSE Tumbleweed" }, { "category": "default_component_of", "full_product_name": { "name": "libpython2_7-1_0-32bit-2.7.12-1.4.x86_64 as component of openSUSE Tumbleweed", "product_id": "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64" }, "product_reference": "libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "relates_to_product_reference": "openSUSE Tumbleweed" }, { "category": "default_component_of", "full_product_name": { "name": "python-base-2.7.12-1.4.aarch64 as component of openSUSE Tumbleweed", "product_id": "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64" }, "product_reference": "python-base-2.7.12-1.4.aarch64", "relates_to_product_reference": "openSUSE Tumbleweed" }, { "category": "default_component_of", "full_product_name": { "name": "python-base-2.7.12-1.4.ppc64le as component of openSUSE Tumbleweed", "product_id": "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le" }, "product_reference": "python-base-2.7.12-1.4.ppc64le", "relates_to_product_reference": "openSUSE Tumbleweed" }, { "category": "default_component_of", "full_product_name": { "name": "python-base-2.7.12-1.4.s390x as component of openSUSE Tumbleweed", "product_id": "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x" }, "product_reference": "python-base-2.7.12-1.4.s390x", "relates_to_product_reference": "openSUSE Tumbleweed" }, { "category": "default_component_of", "full_product_name": { "name": "python-base-2.7.12-1.4.x86_64 as component of openSUSE Tumbleweed", "product_id": "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64" }, "product_reference": "python-base-2.7.12-1.4.x86_64", "relates_to_product_reference": "openSUSE Tumbleweed" }, { "category": "default_component_of", "full_product_name": { "name": "python-base-32bit-2.7.12-1.4.aarch64 as component of openSUSE Tumbleweed", "product_id": "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64" }, "product_reference": "python-base-32bit-2.7.12-1.4.aarch64", "relates_to_product_reference": "openSUSE Tumbleweed" }, { "category": "default_component_of", "full_product_name": { "name": "python-base-32bit-2.7.12-1.4.ppc64le as component of openSUSE Tumbleweed", "product_id": "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le" }, "product_reference": "python-base-32bit-2.7.12-1.4.ppc64le", "relates_to_product_reference": "openSUSE Tumbleweed" }, { "category": "default_component_of", "full_product_name": { "name": "python-base-32bit-2.7.12-1.4.s390x as component of openSUSE Tumbleweed", "product_id": "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x" }, "product_reference": "python-base-32bit-2.7.12-1.4.s390x", "relates_to_product_reference": "openSUSE Tumbleweed" }, { "category": "default_component_of", "full_product_name": { "name": "python-base-32bit-2.7.12-1.4.x86_64 as component of openSUSE Tumbleweed", "product_id": "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64" }, "product_reference": "python-base-32bit-2.7.12-1.4.x86_64", "relates_to_product_reference": "openSUSE Tumbleweed" }, { "category": "default_component_of", "full_product_name": { "name": "python-devel-2.7.12-1.4.aarch64 as component of openSUSE Tumbleweed", "product_id": "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64" }, "product_reference": "python-devel-2.7.12-1.4.aarch64", "relates_to_product_reference": "openSUSE Tumbleweed" }, { "category": "default_component_of", "full_product_name": { "name": "python-devel-2.7.12-1.4.ppc64le as component of openSUSE Tumbleweed", "product_id": "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le" }, "product_reference": "python-devel-2.7.12-1.4.ppc64le", "relates_to_product_reference": "openSUSE Tumbleweed" }, { "category": "default_component_of", "full_product_name": { "name": "python-devel-2.7.12-1.4.s390x as component of openSUSE Tumbleweed", "product_id": "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x" }, "product_reference": "python-devel-2.7.12-1.4.s390x", "relates_to_product_reference": "openSUSE Tumbleweed" }, { "category": "default_component_of", "full_product_name": { "name": "python-devel-2.7.12-1.4.x86_64 as component of openSUSE Tumbleweed", "product_id": "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64" }, "product_reference": "python-devel-2.7.12-1.4.x86_64", "relates_to_product_reference": "openSUSE Tumbleweed" }, { "category": "default_component_of", "full_product_name": { "name": "python-xml-2.7.12-1.4.aarch64 as component of openSUSE Tumbleweed", "product_id": "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64" }, "product_reference": "python-xml-2.7.12-1.4.aarch64", "relates_to_product_reference": "openSUSE Tumbleweed" }, { "category": "default_component_of", "full_product_name": { "name": "python-xml-2.7.12-1.4.ppc64le as component of openSUSE Tumbleweed", "product_id": "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le" }, "product_reference": "python-xml-2.7.12-1.4.ppc64le", "relates_to_product_reference": "openSUSE Tumbleweed" }, { "category": "default_component_of", "full_product_name": { "name": "python-xml-2.7.12-1.4.s390x as component of openSUSE Tumbleweed", "product_id": "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x" }, "product_reference": "python-xml-2.7.12-1.4.s390x", "relates_to_product_reference": "openSUSE Tumbleweed" }, { "category": "default_component_of", "full_product_name": { "name": "python-xml-2.7.12-1.4.x86_64 as component of openSUSE Tumbleweed", "product_id": "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" }, "product_reference": "python-xml-2.7.12-1.4.x86_64", "relates_to_product_reference": "openSUSE Tumbleweed" } ] }, "vulnerabilities": [ { "cve": "CVE-2011-1521", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2011-1521" } ], "notes": [ { "category": "general", "text": "The urllib and urllib2 modules in Python 2.x before 2.7.2 and 3.x before 3.2.1 process Location headers that specify redirection to file: URLs, which makes it easier for remote attackers to obtain sensitive information or cause a denial of service (resource consumption) via a crafted URL, as demonstrated by the file:///etc/passwd and file:///dev/zero URLs.", "title": "CVE description" } ], "product_status": { "recommended": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2011-1521", "url": "https://www.suse.com/security/cve/CVE-2011-1521" }, { "category": "external", "summary": "SUSE Bug 682554 for CVE-2011-1521", "url": "https://bugzilla.suse.com/682554" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-06-15T00:00:00Z", "details": "moderate" } ], "title": "CVE-2011-1521" }, { "cve": "CVE-2011-3389", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2011-3389" } ], "notes": [ { "category": "general", "text": "The SSL protocol, as used in certain configurations in Microsoft Windows and Microsoft Internet Explorer, Mozilla Firefox, Google Chrome, Opera, and other products, encrypts data by using CBC mode with chained initialization vectors, which allows man-in-the-middle attackers to obtain plaintext HTTP headers via a blockwise chosen-boundary attack (BCBA) on an HTTPS session, in conjunction with JavaScript code that uses (1) the HTML5 WebSocket API, (2) the Java URLConnection API, or (3) the Silverlight WebClient API, aka a \"BEAST\" attack.", "title": "CVE description" } ], "product_status": { "recommended": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2011-3389", "url": "https://www.suse.com/security/cve/CVE-2011-3389" }, { "category": "external", "summary": "SUSE Bug 716002 for CVE-2011-3389", "url": "https://bugzilla.suse.com/716002" }, { "category": "external", "summary": "SUSE Bug 719047 for CVE-2011-3389", "url": "https://bugzilla.suse.com/719047" }, { "category": "external", "summary": "SUSE Bug 725167 for CVE-2011-3389", "url": "https://bugzilla.suse.com/725167" }, { "category": "external", "summary": "SUSE Bug 726096 for CVE-2011-3389", "url": "https://bugzilla.suse.com/726096" }, { "category": "external", "summary": "SUSE Bug 739248 for CVE-2011-3389", "url": "https://bugzilla.suse.com/739248" }, { "category": "external", "summary": "SUSE Bug 739256 for CVE-2011-3389", "url": "https://bugzilla.suse.com/739256" }, { "category": "external", "summary": "SUSE Bug 742306 for CVE-2011-3389", "url": "https://bugzilla.suse.com/742306" }, { "category": "external", "summary": "SUSE Bug 751718 for CVE-2011-3389", "url": "https://bugzilla.suse.com/751718" }, { "category": "external", "summary": "SUSE Bug 759666 for CVE-2011-3389", "url": "https://bugzilla.suse.com/759666" }, { "category": "external", "summary": "SUSE Bug 763598 for CVE-2011-3389", "url": "https://bugzilla.suse.com/763598" }, { "category": "external", "summary": "SUSE Bug 814655 for CVE-2011-3389", "url": "https://bugzilla.suse.com/814655" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 3.7, "baseSeverity": "LOW", "vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N", "version": "3.1" }, "products": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-06-15T00:00:00Z", "details": "low" } ], "title": "CVE-2011-3389" }, { "cve": "CVE-2011-4944", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2011-4944" } ], "notes": [ { "category": "general", "text": "Python 2.6 through 3.2 creates ~/.pypirc with world-readable permissions before changing them after data has been written, which introduces a race condition that allows local users to obtain a username and password by reading this file.", "title": "CVE description" } ], "product_status": { "recommended": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2011-4944", "url": "https://www.suse.com/security/cve/CVE-2011-4944" }, { "category": "external", "summary": "SUSE Bug 754447 for CVE-2011-4944", "url": "https://bugzilla.suse.com/754447" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 3.3, "baseSeverity": "LOW", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N", "version": "3.1" }, "products": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-06-15T00:00:00Z", "details": "low" } ], "title": "CVE-2011-4944" }, { "cve": "CVE-2012-0845", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2012-0845" } ], "notes": [ { "category": "general", "text": "SimpleXMLRPCServer.py in SimpleXMLRPCServer in Python before 2.6.8, 2.7.x before 2.7.3, 3.x before 3.1.5, and 3.2.x before 3.2.3 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via an XML-RPC POST request that contains a smaller amount of data than specified by the Content-Length header.", "title": "CVE description" } ], "product_status": { "recommended": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2012-0845", "url": "https://www.suse.com/security/cve/CVE-2012-0845" }, { "category": "external", "summary": "SUSE Bug 747125 for CVE-2012-0845", "url": "https://bugzilla.suse.com/747125" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.3, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L", "version": "3.1" }, "products": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-06-15T00:00:00Z", "details": "moderate" } ], "title": "CVE-2012-0845" }, { "cve": "CVE-2012-1150", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2012-1150" } ], "notes": [ { "category": "general", "text": "Python before 2.6.8, 2.7.x before 2.7.3, 3.x before 3.1.5, and 3.2.x before 3.2.3 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table.", "title": "CVE description" } ], "product_status": { "recommended": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2012-1150", "url": "https://www.suse.com/security/cve/CVE-2012-1150" }, { "category": "external", "summary": "SUSE Bug 751718 for CVE-2012-1150", "url": "https://bugzilla.suse.com/751718" }, { "category": "external", "summary": "SUSE Bug 755383 for CVE-2012-1150", "url": "https://bugzilla.suse.com/755383" }, { "category": "external", "summary": "SUSE Bug 826682 for CVE-2012-1150", "url": "https://bugzilla.suse.com/826682" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.3, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L", "version": "3.1" }, "products": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-06-15T00:00:00Z", "details": "moderate" } ], "title": "CVE-2012-1150" }, { "cve": "CVE-2013-1752", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2013-1752" } ], "notes": [ { "category": "general", "text": "Various versions of Python do not properly restrict readline calls, which allows remote attackers to cause a denial of service (memory consumption) via a long string, related to (1) httplib - fixed in 2.7.4, 2.6.9, and 3.3.3; (2) ftplib - fixed in 2.7.6, 2.6.9, 3.3.3; (3) imaplib - not yet fixed in 2.7.x, fixed in 2.6.9, 3.3.3; (4) nntplib - fixed in 2.7.6, 2.6.9, 3.3.3; (5) poplib - not yet fixed in 2.7.x, fixed in 2.6.9, 3.3.3; and (6) smtplib - not yet fixed in 2.7.x, fixed in 2.6.9, not yet fixed in 3.3.x. NOTE: this was REJECTed because it is incompatible with CNT1 \"Independently Fixable\" in the CVE Counting Decisions", "title": "CVE description" } ], "product_status": { "recommended": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2013-1752", "url": "https://www.suse.com/security/cve/CVE-2013-1752" }, { "category": "external", "summary": "SUSE Bug 856835 for CVE-2013-1752", "url": "https://bugzilla.suse.com/856835" }, { "category": "external", "summary": "SUSE Bug 856836 for CVE-2013-1752", "url": "https://bugzilla.suse.com/856836" }, { "category": "external", "summary": "SUSE Bug 863741 for CVE-2013-1752", "url": "https://bugzilla.suse.com/863741" }, { "category": "external", "summary": "SUSE Bug 885882 for CVE-2013-1752", "url": "https://bugzilla.suse.com/885882" }, { "category": "external", "summary": "SUSE Bug 898572 for CVE-2013-1752", "url": "https://bugzilla.suse.com/898572" }, { "category": "external", "summary": "SUSE Bug 912739 for CVE-2013-1752", "url": "https://bugzilla.suse.com/912739" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.3, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L", "version": "3.1" }, "products": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-06-15T00:00:00Z", "details": "moderate" } ], "title": "CVE-2013-1752" }, { "cve": "CVE-2013-1753", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2013-1753" } ], "notes": [ { "category": "general", "text": "The gzip_decode function in the xmlrpc client library in Python 3.4 and earlier allows remote attackers to cause a denial of service (memory consumption) via a crafted HTTP request.", "title": "CVE description" } ], "product_status": { "recommended": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2013-1753", "url": "https://www.suse.com/security/cve/CVE-2013-1753" }, { "category": "external", "summary": "SUSE Bug 856835 for CVE-2013-1753", "url": "https://bugzilla.suse.com/856835" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 7.5, "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H", "version": "3.1" }, "products": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-06-15T00:00:00Z", "details": "moderate" } ], "title": "CVE-2013-1753" }, { "cve": "CVE-2013-4238", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2013-4238" } ], "notes": [ { "category": "general", "text": "The ssl.match_hostname function in the SSL module in Python 2.6 through 3.4 does not properly handle a \u0027\\0\u0027 character in a domain name in the Subject Alternative Name field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority, a related issue to CVE-2009-2408.", "title": "CVE description" } ], "product_status": { "recommended": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2013-4238", "url": "https://www.suse.com/security/cve/CVE-2013-4238" }, { "category": "external", "summary": "SUSE Bug 834601 for CVE-2013-4238", "url": "https://bugzilla.suse.com/834601" }, { "category": "external", "summary": "SUSE Bug 839107 for CVE-2013-4238", "url": "https://bugzilla.suse.com/839107" }, { "category": "external", "summary": "SUSE Bug 882915 for CVE-2013-4238", "url": "https://bugzilla.suse.com/882915" }, { "category": "external", "summary": "SUSE Bug 912739 for CVE-2013-4238", "url": "https://bugzilla.suse.com/912739" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.3, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N", "version": "3.1" }, "products": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-06-15T00:00:00Z", "details": "moderate" } ], "title": "CVE-2013-4238" }, { "cve": "CVE-2014-1912", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2014-1912" } ], "notes": [ { "category": "general", "text": "Buffer overflow in the socket.recvfrom_into function in Modules/socketmodule.c in Python 2.5 before 2.7.7, 3.x before 3.3.4, and 3.4.x before 3.4rc1 allows remote attackers to execute arbitrary code via a crafted string.", "title": "CVE description" } ], "product_status": { "recommended": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2014-1912", "url": "https://www.suse.com/security/cve/CVE-2014-1912" }, { "category": "external", "summary": "SUSE Bug 1049392 for CVE-2014-1912", "url": "https://bugzilla.suse.com/1049392" }, { "category": "external", "summary": "SUSE Bug 1049422 for CVE-2014-1912", "url": "https://bugzilla.suse.com/1049422" }, { "category": "external", "summary": "SUSE Bug 863741 for CVE-2014-1912", "url": "https://bugzilla.suse.com/863741" }, { "category": "external", "summary": "SUSE Bug 882915 for CVE-2014-1912", "url": "https://bugzilla.suse.com/882915" }, { "category": "external", "summary": "SUSE Bug 912739 for CVE-2014-1912", "url": "https://bugzilla.suse.com/912739" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-06-15T00:00:00Z", "details": "moderate" } ], "title": "CVE-2014-1912" }, { "cve": "CVE-2014-4650", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2014-4650" } ], "notes": [ { "category": "general", "text": "The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separators, which allows remote attackers to read script source code or conduct directory traversal attacks and execute unintended code via a crafted character sequence, as demonstrated by a %2f separator.", "title": "CVE description" } ], "product_status": { "recommended": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2014-4650", "url": "https://www.suse.com/security/cve/CVE-2014-4650" }, { "category": "external", "summary": "SUSE Bug 856835 for CVE-2014-4650", "url": "https://bugzilla.suse.com/856835" }, { "category": "external", "summary": "SUSE Bug 856836 for CVE-2014-4650", "url": "https://bugzilla.suse.com/856836" }, { "category": "external", "summary": "SUSE Bug 863741 for CVE-2014-4650", "url": "https://bugzilla.suse.com/863741" }, { "category": "external", "summary": "SUSE Bug 885882 for CVE-2014-4650", "url": "https://bugzilla.suse.com/885882" }, { "category": "external", "summary": "SUSE Bug 898572 for CVE-2014-4650", "url": "https://bugzilla.suse.com/898572" }, { "category": "external", "summary": "SUSE Bug 912739 for CVE-2014-4650", "url": "https://bugzilla.suse.com/912739" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 5.3, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N", "version": "3.1" }, "products": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-06-15T00:00:00Z", "details": "moderate" } ], "title": "CVE-2014-4650" }, { "cve": "CVE-2014-7185", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2014-7185" } ], "notes": [ { "category": "general", "text": "Integer overflow in bufferobject.c in Python before 2.7.8 allows context-dependent attackers to obtain sensitive information from process memory via a large size and offset in a \"buffer\" function.", "title": "CVE description" } ], "product_status": { "recommended": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2014-7185", "url": "https://www.suse.com/security/cve/CVE-2014-7185" }, { "category": "external", "summary": "SUSE Bug 898572 for CVE-2014-7185", "url": "https://bugzilla.suse.com/898572" }, { "category": "external", "summary": "SUSE Bug 912739 for CVE-2014-7185", "url": "https://bugzilla.suse.com/912739" }, { "category": "external", "summary": "SUSE Bug 913479 for CVE-2014-7185", "url": "https://bugzilla.suse.com/913479" }, { "category": "external", "summary": "SUSE Bug 955182 for CVE-2014-7185", "url": "https://bugzilla.suse.com/955182" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-06-15T00:00:00Z", "details": "moderate" } ], "title": "CVE-2014-7185" }, { "cve": "CVE-2016-0772", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2016-0772" } ], "notes": [ { "category": "general", "text": "The smtplib library in CPython (aka Python) before 2.7.12, 3.x before 3.4.5, and 3.5.x before 3.5.2 does not return an error when StartTLS fails, which might allow man-in-the-middle attackers to bypass the TLS protections by leveraging a network position between the client and the registry to block the StartTLS command, aka a \"StartTLS stripping attack.\"", "title": "CVE description" } ], "product_status": { "recommended": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2016-0772", "url": "https://www.suse.com/security/cve/CVE-2016-0772" }, { "category": "external", "summary": "SUSE Bug 984751 for CVE-2016-0772", "url": "https://bugzilla.suse.com/984751" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6.5, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:H/A:N", "version": "3.0" }, "products": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-06-15T00:00:00Z", "details": "moderate" } ], "title": "CVE-2016-0772" }, { "cve": "CVE-2016-5636", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2016-5636" } ], "notes": [ { "category": "general", "text": "Integer overflow in the get_data function in zipimport.c in CPython (aka Python) before 2.7.12, 3.x before 3.4.5, and 3.5.x before 3.5.2 allows remote attackers to have unspecified impact via a negative data size value, which triggers a heap-based buffer overflow.", "title": "CVE description" } ], "product_status": { "recommended": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2016-5636", "url": "https://www.suse.com/security/cve/CVE-2016-5636" }, { "category": "external", "summary": "SUSE Bug 1065451 for CVE-2016-5636", "url": "https://bugzilla.suse.com/1065451" }, { "category": "external", "summary": "SUSE Bug 1106262 for CVE-2016-5636", "url": "https://bugzilla.suse.com/1106262" }, { "category": "external", "summary": "SUSE Bug 985177 for CVE-2016-5636", "url": "https://bugzilla.suse.com/985177" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 7.8, "baseSeverity": "HIGH", "vectorString": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H", "version": "3.0" }, "products": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-06-15T00:00:00Z", "details": "moderate" } ], "title": "CVE-2016-5636" }, { "cve": "CVE-2016-5699", "ids": [ { "system_name": "SUSE CVE Page", "text": "https://www.suse.com/security/cve/CVE-2016-5699" } ], "notes": [ { "category": "general", "text": "CRLF injection vulnerability in the HTTPConnection.putheader function in urllib2 and urllib in CPython (aka Python) before 2.7.10 and 3.x before 3.4.4 allows remote attackers to inject arbitrary HTTP headers via CRLF sequences in a URL.", "title": "CVE description" } ], "product_status": { "recommended": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] }, "references": [ { "category": "external", "summary": "CVE-2016-5699", "url": "https://www.suse.com/security/cve/CVE-2016-5699" }, { "category": "external", "summary": "SUSE Bug 1122729 for CVE-2016-5699", "url": "https://bugzilla.suse.com/1122729" }, { "category": "external", "summary": "SUSE Bug 1130840 for CVE-2016-5699", "url": "https://bugzilla.suse.com/1130840" }, { "category": "external", "summary": "SUSE Bug 985348 for CVE-2016-5699", "url": "https://bugzilla.suse.com/985348" }, { "category": "external", "summary": "SUSE Bug 985351 for CVE-2016-5699", "url": "https://bugzilla.suse.com/985351" }, { "category": "external", "summary": "SUSE Bug 986630 for CVE-2016-5699", "url": "https://bugzilla.suse.com/986630" } ], "remediations": [ { "category": "vendor_fix", "details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n", "product_ids": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] } ], "scores": [ { "cvss_v3": { "baseScore": 6.1, "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N", "version": "3.0" }, "products": [ "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:libpython2_7-1_0-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-base-32bit-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-devel-2.7.12-1.4.x86_64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.aarch64", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.ppc64le", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.s390x", "openSUSE Tumbleweed:python-xml-2.7.12-1.4.x86_64" ] } ], "threats": [ { "category": "impact", "date": "2024-06-15T00:00:00Z", "details": "moderate" } ], "title": "CVE-2016-5699" } ] }
Loading…
Loading…
Sightings
Author | Source | Type | Date |
---|
Nomenclature
- Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
- Confirmed: The vulnerability is confirmed from an analyst perspective.
- Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
- Patched: This vulnerability was successfully patched by the user reporting the sighting.
- Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
- Not confirmed: The user expresses doubt about the veracity of the vulnerability.
- Not patched: This vulnerability was not successfully patched by the user reporting the sighting.
Loading…
Loading…