Количество 33
Количество 33
GHSA-5rjg-fvgr-3xxf
setuptools has a path traversal vulnerability in PackageIndex.download that leads to Arbitrary File Write

CVE-2025-47273
setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVE-2025-47273
setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVE-2025-47273
setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.

CVE-2025-47273
CVE-2025-47273
setuptools is a package that allows users to download, build, install, ...

SUSE-SU-2025:01810-1
Security update for python3-setuptools

SUSE-SU-2025:01774-1
Security update for python312-setuptools

SUSE-SU-2025:01744-1
Security update for python313-setuptools

SUSE-SU-2025:01723-1
Security update for python39-setuptools

SUSE-SU-2025:01715-1
Security update for python-setuptools

SUSE-SU-2025:01709-1
Security update for python310-setuptools

SUSE-SU-2025:01704-2
Security update for python-setuptools

SUSE-SU-2025:01704-1
Security update for python-setuptools

SUSE-SU-2025:01695-1
Security update for python-setuptools

SUSE-SU-2025:01693-1
Security update for python36-setuptools

ROS-20250630-08
Уязвимость python3-setuptools

RLSA-2025:9940
Moderate: python-setuptools security update

RLSA-2025:11044
Moderate: python3.12-setuptools security update

RLSA-2025:11043
Moderate: python3.11-setuptools security update
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
GHSA-5rjg-fvgr-3xxf setuptools has a path traversal vulnerability in PackageIndex.download that leads to Arbitrary File Write | 0% Низкий | 5 месяцев назад | ||
![]() | CVE-2025-47273 setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue. | CVSS3: 8.8 | 0% Низкий | 5 месяцев назад |
![]() | CVE-2025-47273 setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue. | CVSS3: 7.1 | 0% Низкий | 5 месяцев назад |
![]() | CVE-2025-47273 setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue. | CVSS3: 8.8 | 0% Низкий | 5 месяцев назад |
![]() | CVSS3: 8.8 | 0% Низкий | 4 месяца назад | |
CVE-2025-47273 setuptools is a package that allows users to download, build, install, ... | CVSS3: 8.8 | 0% Низкий | 5 месяцев назад | |
![]() | SUSE-SU-2025:01810-1 Security update for python3-setuptools | 0% Низкий | 4 месяца назад | |
![]() | SUSE-SU-2025:01774-1 Security update for python312-setuptools | 0% Низкий | 5 месяцев назад | |
![]() | SUSE-SU-2025:01744-1 Security update for python313-setuptools | 0% Низкий | 5 месяцев назад | |
![]() | SUSE-SU-2025:01723-1 Security update for python39-setuptools | 0% Низкий | 5 месяцев назад | |
![]() | SUSE-SU-2025:01715-1 Security update for python-setuptools | 0% Низкий | 5 месяцев назад | |
![]() | SUSE-SU-2025:01709-1 Security update for python310-setuptools | 0% Низкий | 5 месяцев назад | |
![]() | SUSE-SU-2025:01704-2 Security update for python-setuptools | 0% Низкий | 4 месяца назад | |
![]() | SUSE-SU-2025:01704-1 Security update for python-setuptools | 0% Низкий | 5 месяцев назад | |
![]() | SUSE-SU-2025:01695-1 Security update for python-setuptools | 0% Низкий | 5 месяцев назад | |
![]() | SUSE-SU-2025:01693-1 Security update for python36-setuptools | 0% Низкий | 5 месяцев назад | |
![]() | ROS-20250630-08 Уязвимость python3-setuptools | CVSS3: 8.8 | 0% Низкий | 4 месяца назад |
![]() | RLSA-2025:9940 Moderate: python-setuptools security update | 0% Низкий | 13 дней назад | |
![]() | RLSA-2025:11044 Moderate: python3.12-setuptools security update | 0% Низкий | 3 месяца назад | |
![]() | RLSA-2025:11043 Moderate: python3.11-setuptools security update | 0% Низкий | 3 месяца назад |
Уязвимостей на страницу