Количество 38
Количество 38
BDU:2025-08604
Уязвимость библиотеки упрощения упаковки проектов setuptools, связанная с неверным ограничением имени пути к каталогу с ограниченным доступом, позволяющая нарушителю скомпрометировать уязвимую систему
ROS-20250630-08
Уязвимость python3-setuptools
CVE-2025-47273
setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.
CVE-2025-47273
setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.
CVE-2025-47273
setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.
CVE-2025-47273
setuptools has a path traversal vulnerability in PackageIndex.download that leads to Arbitrary File Write
CVE-2025-47273
setuptools is a package that allows users to download, build, install, ...
SUSE-SU-2025:01810-1
Security update for python3-setuptools
SUSE-SU-2025:01774-1
Security update for python312-setuptools
SUSE-SU-2025:01744-1
Security update for python313-setuptools
SUSE-SU-2025:01723-1
Security update for python39-setuptools
SUSE-SU-2025:01715-1
Security update for python-setuptools
SUSE-SU-2025:01709-1
Security update for python310-setuptools
SUSE-SU-2025:01704-2
Security update for python-setuptools
SUSE-SU-2025:01704-1
Security update for python-setuptools
SUSE-SU-2025:01695-1
Security update for python-setuptools
SUSE-SU-2025:01693-1
Security update for python36-setuptools
RLSA-2025:9940
Moderate: python-setuptools security update
RLSA-2025:13578
Moderate: python3.11-setuptools security update
RLSA-2025:12834
Moderate: python3.12-setuptools security update
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2025-08604 Уязвимость библиотеки упрощения упаковки проектов setuptools, связанная с неверным ограничением имени пути к каталогу с ограниченным доступом, позволяющая нарушителю скомпрометировать уязвимую систему | CVSS3: 8.8 | 1% Низкий | около 1 года назад | |
ROS-20250630-08 Уязвимость python3-setuptools | CVSS3: 8.8 | 1% Низкий | около 1 года назад | |
CVE-2025-47273 setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue. | CVSS3: 8.8 | 1% Низкий | около 1 года назад | |
CVE-2025-47273 setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue. | CVSS3: 7.1 | 1% Низкий | около 1 года назад | |
CVE-2025-47273 setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue. | CVSS3: 8.8 | 1% Низкий | около 1 года назад | |
CVE-2025-47273 setuptools has a path traversal vulnerability in PackageIndex.download that leads to Arbitrary File Write | CVSS3: 8.8 | 1% Низкий | около 1 года назад | |
CVE-2025-47273 setuptools is a package that allows users to download, build, install, ... | CVSS3: 8.8 | 1% Низкий | около 1 года назад | |
SUSE-SU-2025:01810-1 Security update for python3-setuptools | 1% Низкий | около 1 года назад | ||
SUSE-SU-2025:01774-1 Security update for python312-setuptools | 1% Низкий | около 1 года назад | ||
SUSE-SU-2025:01744-1 Security update for python313-setuptools | 1% Низкий | около 1 года назад | ||
SUSE-SU-2025:01723-1 Security update for python39-setuptools | 1% Низкий | около 1 года назад | ||
SUSE-SU-2025:01715-1 Security update for python-setuptools | 1% Низкий | около 1 года назад | ||
SUSE-SU-2025:01709-1 Security update for python310-setuptools | 1% Низкий | около 1 года назад | ||
SUSE-SU-2025:01704-2 Security update for python-setuptools | 1% Низкий | около 1 года назад | ||
SUSE-SU-2025:01704-1 Security update for python-setuptools | 1% Низкий | около 1 года назад | ||
SUSE-SU-2025:01695-1 Security update for python-setuptools | 1% Низкий | около 1 года назад | ||
SUSE-SU-2025:01693-1 Security update for python36-setuptools | 1% Низкий | около 1 года назад | ||
RLSA-2025:9940 Moderate: python-setuptools security update | 1% Низкий | 10 месяцев назад | ||
RLSA-2025:13578 Moderate: python3.11-setuptools security update | 1% Низкий | 10 месяцев назад | ||
RLSA-2025:12834 Moderate: python3.12-setuptools security update | 1% Низкий | 10 месяцев назад |
Уязвимостей на страницу