Описание
Babel.Locale in Babel before 2.9.1 allows attackers to load arbitrary locale .dat files (containing serialized Python objects) via directory traversal, leading to code execution.
Релиз | Статус | Примечание |
---|---|---|
bionic | not-affected | 2.4.0+dfsg.1-2ubuntu1.1 |
devel | not-affected | |
esm-infra-legacy/trusty | not-affected | 1.3+dfsg.1-2ubuntu2+esm1 |
esm-infra/bionic | not-affected | 2.4.0+dfsg.1-2ubuntu1.1 |
esm-infra/focal | not-affected | 2.6.0+dfsg.1-1ubuntu2.2 |
esm-infra/xenial | not-affected | 1.3+dfsg.1-6ubuntu0.1~esm1 |
focal | not-affected | 2.6.0+dfsg.1-1ubuntu2.2 |
hirsute | not-affected | 2.8.0+dfsg.1-6ubuntu0.1 |
impish | not-affected | 2.8.0+dfsg.1-7 |
jammy | not-affected |
Показывать по
7.2 High
CVSS2
7.8 High
CVSS3
Связанные уязвимости
Babel.Locale in Babel before 2.9.1 allows attackers to load arbitrary locale .dat files (containing serialized Python objects) via directory traversal, leading to code execution.
Babel.Locale in Babel before 2.9.1 allows attackers to load arbitrary locale .dat files (containing serialized Python objects) via directory traversal, leading to code execution.
Babel.Locale in Babel before 2.9.1 allows attackers to load arbitrary ...
7.2 High
CVSS2
7.8 High
CVSS3