Количество 16
Количество 16
GHSA-6m57-q338-h677
The smtplib library in CPython (aka Python) before 2.7.12, 3.x before 3.4.5, and 3.5.x before 3.5.2 does not return an error when StartTLS fails, which might allow man-in-the-middle attackers to bypass the TLS protections by leveraging a network position between the client and the registry to block the StartTLS command, aka a "StartTLS stripping attack."

CVE-2016-0772
The smtplib library in CPython (aka Python) before 2.7.12, 3.x before 3.4.5, and 3.5.x before 3.5.2 does not return an error when StartTLS fails, which might allow man-in-the-middle attackers to bypass the TLS protections by leveraging a network position between the client and the registry to block the StartTLS command, aka a "StartTLS stripping attack."

CVE-2016-0772
The smtplib library in CPython (aka Python) before 2.7.12, 3.x before 3.4.5, and 3.5.x before 3.5.2 does not return an error when StartTLS fails, which might allow man-in-the-middle attackers to bypass the TLS protections by leveraging a network position between the client and the registry to block the StartTLS command, aka a "StartTLS stripping attack."

CVE-2016-0772
The smtplib library in CPython (aka Python) before 2.7.12, 3.x before 3.4.5, and 3.5.x before 3.5.2 does not return an error when StartTLS fails, which might allow man-in-the-middle attackers to bypass the TLS protections by leveraging a network position between the client and the registry to block the StartTLS command, aka a "StartTLS stripping attack."
CVE-2016-0772
The smtplib library in CPython (aka Python) before 2.7.12, 3.x before ...

openSUSE-SU-2016:1885-1
Security update for python

SUSE-SU-2016:2270-1
Security update for python
ELSA-2016-1626
ELSA-2016-1626: python security update (MODERATE)

SUSE-SU-2016:2859-1
Security update for python3

SUSE-SU-2016:2653-1
Security update for python3

SUSE-SU-2016:2106-1
Security update for python

openSUSE-SU-2016:2120-1
Security update for python3

SUSE-SU-2019:0223-1
Security update for python

openSUSE-SU-2020:0086-1
Security update for python3

SUSE-SU-2020:0114-1
Security update for python3

SUSE-SU-2020:0234-1
Security update for python
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
GHSA-6m57-q338-h677 The smtplib library in CPython (aka Python) before 2.7.12, 3.x before 3.4.5, and 3.5.x before 3.5.2 does not return an error when StartTLS fails, which might allow man-in-the-middle attackers to bypass the TLS protections by leveraging a network position between the client and the registry to block the StartTLS command, aka a "StartTLS stripping attack." | CVSS3: 6.5 | 10% Средний | около 3 лет назад | |
![]() | CVE-2016-0772 The smtplib library in CPython (aka Python) before 2.7.12, 3.x before 3.4.5, and 3.5.x before 3.5.2 does not return an error when StartTLS fails, which might allow man-in-the-middle attackers to bypass the TLS protections by leveraging a network position between the client and the registry to block the StartTLS command, aka a "StartTLS stripping attack." | CVSS3: 6.5 | 10% Средний | почти 9 лет назад |
![]() | CVE-2016-0772 The smtplib library in CPython (aka Python) before 2.7.12, 3.x before 3.4.5, and 3.5.x before 3.5.2 does not return an error when StartTLS fails, which might allow man-in-the-middle attackers to bypass the TLS protections by leveraging a network position between the client and the registry to block the StartTLS command, aka a "StartTLS stripping attack." | CVSS3: 4.8 | 10% Средний | около 9 лет назад |
![]() | CVE-2016-0772 The smtplib library in CPython (aka Python) before 2.7.12, 3.x before 3.4.5, and 3.5.x before 3.5.2 does not return an error when StartTLS fails, which might allow man-in-the-middle attackers to bypass the TLS protections by leveraging a network position between the client and the registry to block the StartTLS command, aka a "StartTLS stripping attack." | CVSS3: 6.5 | 10% Средний | почти 9 лет назад |
CVE-2016-0772 The smtplib library in CPython (aka Python) before 2.7.12, 3.x before ... | CVSS3: 6.5 | 10% Средний | почти 9 лет назад | |
![]() | openSUSE-SU-2016:1885-1 Security update for python | почти 9 лет назад | ||
![]() | SUSE-SU-2016:2270-1 Security update for python | почти 9 лет назад | ||
ELSA-2016-1626 ELSA-2016-1626: python security update (MODERATE) | почти 9 лет назад | |||
![]() | SUSE-SU-2016:2859-1 Security update for python3 | больше 8 лет назад | ||
![]() | SUSE-SU-2016:2653-1 Security update for python3 | больше 8 лет назад | ||
![]() | SUSE-SU-2016:2106-1 Security update for python | почти 9 лет назад | ||
![]() | openSUSE-SU-2016:2120-1 Security update for python3 | почти 9 лет назад | ||
![]() | SUSE-SU-2019:0223-1 Security update for python | больше 6 лет назад | ||
![]() | openSUSE-SU-2020:0086-1 Security update for python3 | больше 5 лет назад | ||
![]() | SUSE-SU-2020:0114-1 Security update for python3 | больше 5 лет назад | ||
![]() | SUSE-SU-2020:0234-1 Security update for python | больше 5 лет назад |
Уязвимостей на страницу