Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 16

Количество 16

github логотип

GHSA-2w92-jcqh-43jc

4 месяца назад

The "profiling.sampling" module (Python 3.15+) and "asyncio introspection capabilities" (3.14+, "python -m asyncio ps" and "python -m asyncio pstree") features could be used to read and write addresses in a privileged process if that process connected to a malicious or "infected" Python process via the remote debugging feature. This vulnerability requires persistently and repeatedly connecting to the process to be exploited, even after the connecting process crashes with high likelihood due to ASLR.

EPSS: Низкий
ubuntu логотип

CVE-2026-5713

4 месяца назад

The "profiling.sampling" module (Python 3.15+) and "asyncio introspection capabilities" (3.14+, "python -m asyncio ps" and "python -m asyncio pstree") features could be used to read and write addresses in a privileged process if that process connected to a malicious or "infected" Python process via the remote debugging feature. This vulnerability requires persistently and repeatedly connecting to the process to be exploited, even after the connecting process crashes with high likelihood due to ASLR.

EPSS: Низкий
redhat логотип

CVE-2026-5713

4 месяца назад

The "profiling.sampling" module (Python 3.15+) and "asyncio introspection capabilities" (3.14+, "python -m asyncio ps" and "python -m asyncio pstree") features could be used to read and write addresses in a privileged process if that process connected to a malicious or "infected" Python process via the remote debugging feature. This vulnerability requires persistently and repeatedly connecting to the process to be exploited, even after the connecting process crashes with high likelihood due to ASLR.

CVSS3: 6
EPSS: Низкий
nvd логотип

CVE-2026-5713

4 месяца назад

The "profiling.sampling" module (Python 3.15+) and "asyncio introspection capabilities" (3.14+, "python -m asyncio ps" and "python -m asyncio pstree") features could be used to read and write addresses in a privileged process if that process connected to a malicious or "infected" Python process via the remote debugging feature. This vulnerability requires persistently and repeatedly connecting to the process to be exploited, even after the connecting process crashes with high likelihood due to ASLR.

EPSS: Низкий
debian логотип

CVE-2026-5713

4 месяца назад

The "profiling.sampling" module (Python 3.15+) and "asyncio introspect ...

EPSS: Низкий
fstec логотип

BDU:2026-08065

4 месяца назад

Уязвимость функции удаленной отладки интерпретатора языка программирования Python (CPython), позволяющая нарушителю обойти ограничения безопасности

CVSS3: 5.6
EPSS: Низкий
redos логотип

ROS-20260623-73-0010

около 1 месяца назад

Уязвимость python3.13

CVSS3: 5.6
EPSS: Низкий
redos логотип

ROS-20260623-73-0009

около 1 месяца назад

Уязвимость python3.12

CVSS3: 5.6
EPSS: Низкий
redos логотип

ROS-20260623-73-0008

около 1 месяца назад

Уязвимость python3.11

CVSS3: 5.6
EPSS: Низкий
redos логотип

ROS-20260623-73-0007

около 1 месяца назад

Уязвимость python3.10

CVSS3: 5.6
EPSS: Низкий
redos логотип

ROS-20260623-73-0006

около 1 месяца назад

Уязвимость python3.9

CVSS3: 5.6
EPSS: Низкий
redos логотип

ROS-20260623-73-0005

около 1 месяца назад

Уязвимость python3

CVSS3: 5.6
EPSS: Низкий
rocky логотип

RLSA-2026:19176

2 месяца назад

Important: python3.14 security update

EPSS: Низкий
rocky логотип

RLSA-2026:19019

2 месяца назад

Important: python3.14 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-19176

около 2 месяцев назад

ELSA-2026-19176: python3.14 security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-19019

23 дня назад

ELSA-2026-19019: python3.14 security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2w92-jcqh-43jc

The "profiling.sampling" module (Python 3.15+) and "asyncio introspection capabilities" (3.14+, "python -m asyncio ps" and "python -m asyncio pstree") features could be used to read and write addresses in a privileged process if that process connected to a malicious or "infected" Python process via the remote debugging feature. This vulnerability requires persistently and repeatedly connecting to the process to be exploited, even after the connecting process crashes with high likelihood due to ASLR.

0%
Низкий
4 месяца назад
ubuntu логотип
CVE-2026-5713

The "profiling.sampling" module (Python 3.15+) and "asyncio introspection capabilities" (3.14+, "python -m asyncio ps" and "python -m asyncio pstree") features could be used to read and write addresses in a privileged process if that process connected to a malicious or "infected" Python process via the remote debugging feature. This vulnerability requires persistently and repeatedly connecting to the process to be exploited, even after the connecting process crashes with high likelihood due to ASLR.

0%
Низкий
4 месяца назад
redhat логотип
CVE-2026-5713

The "profiling.sampling" module (Python 3.15+) and "asyncio introspection capabilities" (3.14+, "python -m asyncio ps" and "python -m asyncio pstree") features could be used to read and write addresses in a privileged process if that process connected to a malicious or "infected" Python process via the remote debugging feature. This vulnerability requires persistently and repeatedly connecting to the process to be exploited, even after the connecting process crashes with high likelihood due to ASLR.

CVSS3: 6
0%
Низкий
4 месяца назад
nvd логотип
CVE-2026-5713

The "profiling.sampling" module (Python 3.15+) and "asyncio introspection capabilities" (3.14+, "python -m asyncio ps" and "python -m asyncio pstree") features could be used to read and write addresses in a privileged process if that process connected to a malicious or "infected" Python process via the remote debugging feature. This vulnerability requires persistently and repeatedly connecting to the process to be exploited, even after the connecting process crashes with high likelihood due to ASLR.

0%
Низкий
4 месяца назад
debian логотип
CVE-2026-5713

The "profiling.sampling" module (Python 3.15+) and "asyncio introspect ...

0%
Низкий
4 месяца назад
fstec логотип
BDU:2026-08065

Уязвимость функции удаленной отладки интерпретатора языка программирования Python (CPython), позволяющая нарушителю обойти ограничения безопасности

CVSS3: 5.6
0%
Низкий
4 месяца назад
redos логотип
ROS-20260623-73-0010

Уязвимость python3.13

CVSS3: 5.6
0%
Низкий
около 1 месяца назад
redos логотип
ROS-20260623-73-0009

Уязвимость python3.12

CVSS3: 5.6
0%
Низкий
около 1 месяца назад
redos логотип
ROS-20260623-73-0008

Уязвимость python3.11

CVSS3: 5.6
0%
Низкий
около 1 месяца назад
redos логотип
ROS-20260623-73-0007

Уязвимость python3.10

CVSS3: 5.6
0%
Низкий
около 1 месяца назад
redos логотип
ROS-20260623-73-0006

Уязвимость python3.9

CVSS3: 5.6
0%
Низкий
около 1 месяца назад
redos логотип
ROS-20260623-73-0005

Уязвимость python3

CVSS3: 5.6
0%
Низкий
около 1 месяца назад
rocky логотип
RLSA-2026:19176

Important: python3.14 security update

2 месяца назад
rocky логотип
RLSA-2026:19019

Important: python3.14 security update

2 месяца назад
oracle-oval логотип
ELSA-2026-19176

ELSA-2026-19176: python3.14 security update (IMPORTANT)

около 2 месяцев назад
oracle-oval логотип
ELSA-2026-19019

ELSA-2026-19019: python3.14 security update (IMPORTANT)

23 дня назад

Уязвимостей на страницу