Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2020-4654

Опубликовано: 10 нояб. 2020
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2020-4654: python27:2.7 security update (MODERATE)

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

Module python27:2.7 is enabled

babel

2.5.1-9.module+el8.3.0+7833+4aaf98ce

python-nose-docs

1.3.7-30.module+el8.3.0+7833+4aaf98ce

python-psycopg2-doc

2.7.5-7.module+el8.3.0+7833+4aaf98ce

python-sqlalchemy-doc

1.3.2-2.module+el8.3.0+7833+4aaf98ce

python2

2.7.17-2.0.1.module+el8.3.0+7833+4aaf98ce

python2-Cython

0.28.1-7.module+el8.3.0+7833+4aaf98ce

python2-PyMySQL

0.8.0-10.module+el8.3.0+7833+4aaf98ce

python2-attrs

17.4.0-10.module+el8.3.0+7833+4aaf98ce

python2-babel

2.5.1-9.module+el8.3.0+7833+4aaf98ce

python2-backports

1.0-15.0.1.module+el8.3.0+7833+4aaf98ce

python2-backports-ssl_match_hostname

3.5.0.1-11.module+el8.3.0+7833+4aaf98ce

python2-bson

3.6.1-11.module+el8.3.0+7833+4aaf98ce

python2-chardet

3.0.4-10.module+el8.3.0+7833+4aaf98ce

python2-coverage

4.5.1-4.module+el8.3.0+7833+4aaf98ce

python2-debug

2.7.17-2.0.1.module+el8.3.0+7833+4aaf98ce

python2-devel

2.7.17-2.0.1.module+el8.3.0+7833+4aaf98ce

python2-dns

1.15.0-10.module+el8.3.0+7833+4aaf98ce

python2-docs

2.7.16-2.module+el8.3.0+7833+4aaf98ce

python2-docs-info

2.7.16-2.module+el8.3.0+7833+4aaf98ce

python2-docutils

0.14-12.module+el8.3.0+7833+4aaf98ce

python2-funcsigs

1.0.2-13.module+el8.3.0+7833+4aaf98ce

python2-idna

2.5-7.module+el8.3.0+7833+4aaf98ce

python2-ipaddress

1.0.18-6.module+el8.3.0+7833+4aaf98ce

python2-jinja2

2.10-8.module+el8.3.0+7833+4aaf98ce

python2-libs

2.7.17-2.0.1.module+el8.3.0+7833+4aaf98ce

python2-lxml

4.2.3-3.module+el8.3.0+7833+4aaf98ce

python2-markupsafe

0.23-19.module+el8.3.0+7833+4aaf98ce

python2-mock

2.0.0-13.module+el8.3.0+7833+4aaf98ce

python2-nose

1.3.7-30.module+el8.3.0+7833+4aaf98ce

python2-numpy

1.14.2-13.module+el8.3.0+7833+4aaf98ce

python2-numpy-doc

1.14.2-13.module+el8.3.0+7833+4aaf98ce

python2-numpy-f2py

1.14.2-13.module+el8.3.0+7833+4aaf98ce

python2-pip

9.0.3-18.module+el8.3.0+7833+4aaf98ce

python2-pip-wheel

9.0.3-18.module+el8.3.0+7833+4aaf98ce

python2-pluggy

0.6.0-8.module+el8.3.0+7833+4aaf98ce

python2-psycopg2

2.7.5-7.module+el8.3.0+7833+4aaf98ce

python2-psycopg2-debug

2.7.5-7.module+el8.3.0+7833+4aaf98ce

python2-psycopg2-tests

2.7.5-7.module+el8.3.0+7833+4aaf98ce

python2-py

1.5.3-6.module+el8.3.0+7833+4aaf98ce

python2-pygments

2.2.0-20.module+el8.3.0+7833+4aaf98ce

python2-pymongo

3.6.1-11.module+el8.3.0+7833+4aaf98ce

python2-pymongo-gridfs

3.6.1-11.module+el8.3.0+7833+4aaf98ce

python2-pysocks

1.6.8-6.module+el8.3.0+7833+4aaf98ce

python2-pytest

3.4.2-13.module+el8.3.0+7833+4aaf98ce

python2-pytest-mock

1.9.0-4.module+el8.3.0+7833+4aaf98ce

python2-pytz

2017.2-12.module+el8.3.0+7833+4aaf98ce

python2-pyyaml

3.12-16.module+el8.3.0+7833+4aaf98ce

python2-requests

2.20.0-3.module+el8.3.0+7833+4aaf98ce

python2-rpm-macros

3-38.module+el8.3.0+7833+4aaf98ce

python2-scipy

1.0.0-20.module+el8.3.0+7833+4aaf98ce

python2-setuptools

39.0.1-12.module+el8.3.0+7833+4aaf98ce

python2-setuptools-wheel

39.0.1-12.module+el8.3.0+7833+4aaf98ce

python2-setuptools_scm

1.15.7-6.module+el8.3.0+7833+4aaf98ce

python2-six

1.11.0-5.module+el8.3.0+7833+4aaf98ce

python2-sqlalchemy

1.3.2-2.module+el8.3.0+7833+4aaf98ce

python2-test

2.7.17-2.0.1.module+el8.3.0+7833+4aaf98ce

python2-tkinter

2.7.17-2.0.1.module+el8.3.0+7833+4aaf98ce

python2-tools

2.7.17-2.0.1.module+el8.3.0+7833+4aaf98ce

python2-urllib3

1.24.2-1.module+el8.3.0+7833+4aaf98ce

python2-virtualenv

15.1.0-19.module+el8.3.0+7833+4aaf98ce

python2-wheel

0.31.1-2.module+el8.3.0+7833+4aaf98ce

python2-wheel-wheel

0.31.1-2.module+el8.3.0+7833+4aaf98ce

Oracle Linux x86_64

Module python27:2.7 is enabled

babel

2.5.1-9.module+el8.3.0+7833+4aaf98ce

python-nose-docs

1.3.7-30.module+el8.3.0+7833+4aaf98ce

python-psycopg2-doc

2.7.5-7.module+el8.3.0+7833+4aaf98ce

python-sqlalchemy-doc

1.3.2-2.module+el8.3.0+7833+4aaf98ce

python2

2.7.17-2.0.1.module+el8.3.0+7833+4aaf98ce

python2-Cython

0.28.1-7.module+el8.3.0+7833+4aaf98ce

python2-PyMySQL

0.8.0-10.module+el8.3.0+7833+4aaf98ce

python2-attrs

17.4.0-10.module+el8.3.0+7833+4aaf98ce

python2-babel

2.5.1-9.module+el8.3.0+7833+4aaf98ce

python2-backports

1.0-15.0.1.module+el8.3.0+7833+4aaf98ce

python2-backports-ssl_match_hostname

3.5.0.1-11.module+el8.3.0+7833+4aaf98ce

python2-bson

3.6.1-11.module+el8.3.0+7833+4aaf98ce

python2-chardet

3.0.4-10.module+el8.3.0+7833+4aaf98ce

python2-coverage

4.5.1-4.module+el8.3.0+7833+4aaf98ce

python2-debug

2.7.17-2.0.1.module+el8.3.0+7833+4aaf98ce

python2-devel

2.7.17-2.0.1.module+el8.3.0+7833+4aaf98ce

python2-dns

1.15.0-10.module+el8.3.0+7833+4aaf98ce

python2-docs

2.7.16-2.module+el8.3.0+7833+4aaf98ce

python2-docs-info

2.7.16-2.module+el8.3.0+7833+4aaf98ce

python2-docutils

0.14-12.module+el8.3.0+7833+4aaf98ce

python2-funcsigs

1.0.2-13.module+el8.3.0+7833+4aaf98ce

python2-idna

2.5-7.module+el8.3.0+7833+4aaf98ce

python2-ipaddress

1.0.18-6.module+el8.3.0+7833+4aaf98ce

python2-jinja2

2.10-8.module+el8.3.0+7833+4aaf98ce

python2-libs

2.7.17-2.0.1.module+el8.3.0+7833+4aaf98ce

python2-lxml

4.2.3-3.module+el8.3.0+7833+4aaf98ce

python2-markupsafe

0.23-19.module+el8.3.0+7833+4aaf98ce

python2-mock

2.0.0-13.module+el8.3.0+7833+4aaf98ce

python2-nose

1.3.7-30.module+el8.3.0+7833+4aaf98ce

python2-numpy

1.14.2-13.module+el8.3.0+7833+4aaf98ce

python2-numpy-doc

1.14.2-13.module+el8.3.0+7833+4aaf98ce

python2-numpy-f2py

1.14.2-13.module+el8.3.0+7833+4aaf98ce

python2-pip

9.0.3-18.module+el8.3.0+7833+4aaf98ce

python2-pip-wheel

9.0.3-18.module+el8.3.0+7833+4aaf98ce

python2-pluggy

0.6.0-8.module+el8.3.0+7833+4aaf98ce

python2-psycopg2

2.7.5-7.module+el8.3.0+7833+4aaf98ce

python2-psycopg2-debug

2.7.5-7.module+el8.3.0+7833+4aaf98ce

python2-psycopg2-tests

2.7.5-7.module+el8.3.0+7833+4aaf98ce

python2-py

1.5.3-6.module+el8.3.0+7833+4aaf98ce

python2-pygments

2.2.0-20.module+el8.3.0+7833+4aaf98ce

python2-pymongo

3.6.1-11.module+el8.3.0+7833+4aaf98ce

python2-pymongo-gridfs

3.6.1-11.module+el8.3.0+7833+4aaf98ce

python2-pysocks

1.6.8-6.module+el8.3.0+7833+4aaf98ce

python2-pytest

3.4.2-13.module+el8.3.0+7833+4aaf98ce

python2-pytest-mock

1.9.0-4.module+el8.3.0+7833+4aaf98ce

python2-pytz

2017.2-12.module+el8.3.0+7833+4aaf98ce

python2-pyyaml

3.12-16.module+el8.3.0+7833+4aaf98ce

python2-requests

2.20.0-3.module+el8.3.0+7833+4aaf98ce

python2-rpm-macros

3-38.module+el8.3.0+7833+4aaf98ce

python2-scipy

1.0.0-20.module+el8.3.0+7833+4aaf98ce

python2-setuptools

39.0.1-12.module+el8.3.0+7833+4aaf98ce

python2-setuptools-wheel

39.0.1-12.module+el8.3.0+7833+4aaf98ce

python2-setuptools_scm

1.15.7-6.module+el8.3.0+7833+4aaf98ce

python2-six

1.11.0-5.module+el8.3.0+7833+4aaf98ce

python2-sqlalchemy

1.3.2-2.module+el8.3.0+7833+4aaf98ce

python2-test

2.7.17-2.0.1.module+el8.3.0+7833+4aaf98ce

python2-tkinter

2.7.17-2.0.1.module+el8.3.0+7833+4aaf98ce

python2-tools

2.7.17-2.0.1.module+el8.3.0+7833+4aaf98ce

python2-urllib3

1.24.2-1.module+el8.3.0+7833+4aaf98ce

python2-virtualenv

15.1.0-19.module+el8.3.0+7833+4aaf98ce

python2-wheel

0.31.1-2.module+el8.3.0+7833+4aaf98ce

python2-wheel-wheel

0.31.1-2.module+el8.3.0+7833+4aaf98ce

Связанные CVE

Связанные уязвимости

rocky
больше 4 лет назад

Moderate: python27:2.7 security update

suse-cvrf
больше 4 лет назад

Security update for python36

CVSS3: 7.5
ubuntu
почти 5 лет назад

In Lib/tarfile.py in Python through 3.8.3, an attacker is able to craft a TAR archive leading to an infinite loop when opened by tarfile.open, because _proc_pax lacks header validation.

CVSS3: 7.5
redhat
больше 5 лет назад

In Lib/tarfile.py in Python through 3.8.3, an attacker is able to craft a TAR archive leading to an infinite loop when opened by tarfile.open, because _proc_pax lacks header validation.

CVSS3: 7.5
nvd
почти 5 лет назад

In Lib/tarfile.py in Python through 3.8.3, an attacker is able to craft a TAR archive leading to an infinite loop when opened by tarfile.open, because _proc_pax lacks header validation.