Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 36

Количество 36

fstec логотип

BDU:2024-05843

около 2 лет назад

Уязвимость модуля package_index библиотеки упрощения упаковки проектов setuptools, связанная с неправильным контролем генерации кода, позволяющая нарушителю выполнять произвольные команды в системе

CVSS3: 8.8
EPSS: Низкий
redos логотип

ROS-20240729-22

около 2 лет назад

Уязвимость python3-setuptools

CVSS3: 8.8
EPSS: Низкий
ubuntu логотип

CVE-2024-6345

около 2 лет назад

A vulnerability in the package_index module of pypa/setuptools versions up to 69.1.1 allows for remote code execution via its download functions. These functions, which are used to download packages from URLs provided by users or retrieved from package index servers, are susceptible to code injection. If these functions are exposed to user-controlled inputs, such as package URLs, they can execute arbitrary commands on the system. The issue is fixed in version 70.0.

CVSS3: 8.8
EPSS: Низкий
redhat логотип

CVE-2024-6345

около 2 лет назад

A vulnerability in the package_index module of pypa/setuptools versions up to 69.1.1 allows for remote code execution via its download functions. These functions, which are used to download packages from URLs provided by users or retrieved from package index servers, are susceptible to code injection. If these functions are exposed to user-controlled inputs, such as package URLs, they can execute arbitrary commands on the system. The issue is fixed in version 70.0.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2024-6345

около 2 лет назад

A vulnerability in the package_index module of pypa/setuptools versions up to 69.1.1 allows for remote code execution via its download functions. These functions, which are used to download packages from URLs provided by users or retrieved from package index servers, are susceptible to code injection. If these functions are exposed to user-controlled inputs, such as package URLs, they can execute arbitrary commands on the system. The issue is fixed in version 70.0.

CVSS3: 8.8
EPSS: Низкий
msrc логотип

CVE-2024-6345

почти 2 года назад

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2024-6345

около 2 лет назад

A vulnerability in the package_index module of pypa/setuptools version ...

CVSS3: 8.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3055-1

почти 2 года назад

Security update for python-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3054-1

почти 2 года назад

Security update for python3-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2950-1

почти 2 года назад

Security update for python36-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2907-1

почти 2 года назад

Security update for python310-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2906-1

почти 2 года назад

Security update for python39-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2904-1

почти 2 года назад

Security update for python312-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2900-1

почти 2 года назад

Security update for python-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2899-1

почти 2 года назад

Security update for python-setuptools

EPSS: Низкий
rocky логотип

RLSA-2024:6726

почти 2 года назад

Important: fence-agents security update

EPSS: Низкий
rocky логотип

RLSA-2024:5533

почти 2 года назад

Important: python3.12-setuptools security update

EPSS: Низкий
rocky логотип

RLSA-2024:5532

почти 2 года назад

Important: python3.11-setuptools security update

EPSS: Низкий
rocky логотип

RLSA-2024:5531

почти 2 года назад

Important: python3.12-setuptools security update

EPSS: Низкий
rocky логотип

RLSA-2024:5530

почти 2 года назад

Important: python-setuptools security update

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2024-05843

Уязвимость модуля package_index библиотеки упрощения упаковки проектов setuptools, связанная с неправильным контролем генерации кода, позволяющая нарушителю выполнять произвольные команды в системе

CVSS3: 8.8
2%
Низкий
около 2 лет назад
redos логотип
ROS-20240729-22

Уязвимость python3-setuptools

CVSS3: 8.8
2%
Низкий
около 2 лет назад
ubuntu логотип
CVE-2024-6345

A vulnerability in the package_index module of pypa/setuptools versions up to 69.1.1 allows for remote code execution via its download functions. These functions, which are used to download packages from URLs provided by users or retrieved from package index servers, are susceptible to code injection. If these functions are exposed to user-controlled inputs, such as package URLs, they can execute arbitrary commands on the system. The issue is fixed in version 70.0.

CVSS3: 8.8
2%
Низкий
около 2 лет назад
redhat логотип
CVE-2024-6345

A vulnerability in the package_index module of pypa/setuptools versions up to 69.1.1 allows for remote code execution via its download functions. These functions, which are used to download packages from URLs provided by users or retrieved from package index servers, are susceptible to code injection. If these functions are exposed to user-controlled inputs, such as package URLs, they can execute arbitrary commands on the system. The issue is fixed in version 70.0.

CVSS3: 8.8
2%
Низкий
около 2 лет назад
nvd логотип
CVE-2024-6345

A vulnerability in the package_index module of pypa/setuptools versions up to 69.1.1 allows for remote code execution via its download functions. These functions, which are used to download packages from URLs provided by users or retrieved from package index servers, are susceptible to code injection. If these functions are exposed to user-controlled inputs, such as package URLs, they can execute arbitrary commands on the system. The issue is fixed in version 70.0.

CVSS3: 8.8
2%
Низкий
около 2 лет назад
msrc логотип
CVSS3: 8.8
2%
Низкий
почти 2 года назад
debian логотип
CVE-2024-6345

A vulnerability in the package_index module of pypa/setuptools version ...

CVSS3: 8.8
2%
Низкий
около 2 лет назад
suse-cvrf логотип
SUSE-SU-2024:3055-1

Security update for python-setuptools

2%
Низкий
почти 2 года назад
suse-cvrf логотип
SUSE-SU-2024:3054-1

Security update for python3-setuptools

2%
Низкий
почти 2 года назад
suse-cvrf логотип
SUSE-SU-2024:2950-1

Security update for python36-setuptools

2%
Низкий
почти 2 года назад
suse-cvrf логотип
SUSE-SU-2024:2907-1

Security update for python310-setuptools

2%
Низкий
почти 2 года назад
suse-cvrf логотип
SUSE-SU-2024:2906-1

Security update for python39-setuptools

2%
Низкий
почти 2 года назад
suse-cvrf логотип
SUSE-SU-2024:2904-1

Security update for python312-setuptools

2%
Низкий
почти 2 года назад
suse-cvrf логотип
SUSE-SU-2024:2900-1

Security update for python-setuptools

2%
Низкий
почти 2 года назад
suse-cvrf логотип
SUSE-SU-2024:2899-1

Security update for python-setuptools

2%
Низкий
почти 2 года назад
rocky логотип
RLSA-2024:6726

Important: fence-agents security update

2%
Низкий
почти 2 года назад
rocky логотип
RLSA-2024:5533

Important: python3.12-setuptools security update

2%
Низкий
почти 2 года назад
rocky логотип
RLSA-2024:5532

Important: python3.11-setuptools security update

2%
Низкий
почти 2 года назад
rocky логотип
RLSA-2024:5531

Important: python3.12-setuptools security update

2%
Низкий
почти 2 года назад
rocky логотип
RLSA-2024:5530

Important: python-setuptools security update

2%
Низкий
почти 2 года назад

Уязвимостей на страницу