Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2021-4455

Опубликовано: 16 нояб. 2021
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2021-4455: python-pip security update (LOW)

[9.0.3-20]

  • Fix for CVE-2021-3572 - pip incorrectly handled unicode separators in git references Resolves: rhbz#1962856

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

platform-python-pip

9.0.3-20.el8

python3-pip

9.0.3-20.el8

python3-pip-wheel

9.0.3-20.el8

Oracle Linux x86_64

platform-python-pip

9.0.3-20.el8

python3-pip

9.0.3-20.el8

python3-pip-wheel

9.0.3-20.el8

Связанные CVE

Связанные уязвимости

CVSS3: 5.7
ubuntu
больше 3 лет назад

A flaw was found in python-pip in the way it handled Unicode separators in git references. A remote attacker could possibly use this issue to install a different revision on a repository. The highest threat from this vulnerability is to data integrity. This is fixed in python-pip version 21.1.

CVSS3: 4.5
redhat
около 4 лет назад

A flaw was found in python-pip in the way it handled Unicode separators in git references. A remote attacker could possibly use this issue to install a different revision on a repository. The highest threat from this vulnerability is to data integrity. This is fixed in python-pip version 21.1.

CVSS3: 5.7
nvd
больше 3 лет назад

A flaw was found in python-pip in the way it handled Unicode separators in git references. A remote attacker could possibly use this issue to install a different revision on a repository. The highest threat from this vulnerability is to data integrity. This is fixed in python-pip version 21.1.

CVSS3: 5.7
msrc
больше 3 лет назад

Описание отсутствует

CVSS3: 5.7
debian
больше 3 лет назад

A flaw was found in python-pip in the way it handled Unicode separator ...