Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2019-14806

Опубликовано: 09 авг. 2019
Источник: debian

Описание

Pallets Werkzeug before 0.15.3, when used with Docker, has insufficient debugger PIN randomness because Docker containers share the same machine id.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
python-werkzeugfixed0.15.6+dfsg1-1package
python-werkzeugfixed0.14.1+dfsg1-4+deb10u1busterpackage
python-werkzeugfixed0.11.15+dfsg1-1+deb9u1stretchpackage
python-werkzeugnot-affectedjessiepackage

Примечания

  • https://github.com/pallets/werkzeug/commit/00bc43b1672e662e5e3b8cecd79e67fc968fa246

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 6 лет назад

Pallets Werkzeug before 0.15.3, when used with Docker, has insufficient debugger PIN randomness because Docker containers share the same machine id.

CVSS3: 7.5
redhat
больше 6 лет назад

Pallets Werkzeug before 0.15.3, when used with Docker, has insufficient debugger PIN randomness because Docker containers share the same machine id.

CVSS3: 7.5
nvd
больше 6 лет назад

Pallets Werkzeug before 0.15.3, when used with Docker, has insufficient debugger PIN randomness because Docker containers share the same machine id.

suse-cvrf
больше 6 лет назад

Security update for python-Werkzeug

suse-cvrf
больше 6 лет назад

Security update for python-Werkzeug