Логотип exploitDog
bind:CVE-2024-6345
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-6345

Количество 35

Количество 35

ubuntu логотип

CVE-2024-6345

11 месяцев назад

A vulnerability in the package_index module of pypa/setuptools versions up to 69.1.1 allows for remote code execution via its download functions. These functions, which are used to download packages from URLs provided by users or retrieved from package index servers, are susceptible to code injection. If these functions are exposed to user-controlled inputs, such as package URLs, they can execute arbitrary commands on the system. The issue is fixed in version 70.0.

CVSS3: 8.8
EPSS: Низкий
redhat логотип

CVE-2024-6345

11 месяцев назад

A vulnerability in the package_index module of pypa/setuptools versions up to 69.1.1 allows for remote code execution via its download functions. These functions, which are used to download packages from URLs provided by users or retrieved from package index servers, are susceptible to code injection. If these functions are exposed to user-controlled inputs, such as package URLs, they can execute arbitrary commands on the system. The issue is fixed in version 70.0.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2024-6345

11 месяцев назад

A vulnerability in the package_index module of pypa/setuptools versions up to 69.1.1 allows for remote code execution via its download functions. These functions, which are used to download packages from URLs provided by users or retrieved from package index servers, are susceptible to code injection. If these functions are exposed to user-controlled inputs, such as package URLs, they can execute arbitrary commands on the system. The issue is fixed in version 70.0.

CVSS3: 8.8
EPSS: Низкий
msrc логотип

CVE-2024-6345

8 месяцев назад

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2024-6345

11 месяцев назад

A vulnerability in the package_index module of pypa/setuptools version ...

CVSS3: 8.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3055-1

10 месяцев назад

Security update for python-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3054-1

10 месяцев назад

Security update for python3-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2950-1

10 месяцев назад

Security update for python36-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2907-1

10 месяцев назад

Security update for python310-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2906-1

10 месяцев назад

Security update for python39-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2904-1

10 месяцев назад

Security update for python312-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2900-1

10 месяцев назад

Security update for python-setuptools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2899-1

10 месяцев назад

Security update for python-setuptools

EPSS: Низкий
redos логотип

ROS-20240729-22

11 месяцев назад

Уязвимость python3-setuptools

CVSS3: 8.8
EPSS: Низкий
rocky логотип

RLSA-2024:6726

9 месяцев назад

Important: fence-agents security update

EPSS: Низкий
rocky логотип

RLSA-2024:5533

10 месяцев назад

Important: python3.12-setuptools security update

EPSS: Низкий
rocky логотип

RLSA-2024:5532

10 месяцев назад

Important: python3.11-setuptools security update

EPSS: Низкий
rocky логотип

RLSA-2024:5531

10 месяцев назад

Important: python3.12-setuptools security update

EPSS: Низкий
rocky логотип

RLSA-2024:5530

10 месяцев назад

Important: python-setuptools security update

EPSS: Низкий
rocky логотип

RLSA-2024:5279

10 месяцев назад

Important: python3.11-setuptools security update

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-6345

A vulnerability in the package_index module of pypa/setuptools versions up to 69.1.1 allows for remote code execution via its download functions. These functions, which are used to download packages from URLs provided by users or retrieved from package index servers, are susceptible to code injection. If these functions are exposed to user-controlled inputs, such as package URLs, they can execute arbitrary commands on the system. The issue is fixed in version 70.0.

CVSS3: 8.8
0%
Низкий
11 месяцев назад
redhat логотип
CVE-2024-6345

A vulnerability in the package_index module of pypa/setuptools versions up to 69.1.1 allows for remote code execution via its download functions. These functions, which are used to download packages from URLs provided by users or retrieved from package index servers, are susceptible to code injection. If these functions are exposed to user-controlled inputs, such as package URLs, they can execute arbitrary commands on the system. The issue is fixed in version 70.0.

CVSS3: 8.8
0%
Низкий
11 месяцев назад
nvd логотип
CVE-2024-6345

A vulnerability in the package_index module of pypa/setuptools versions up to 69.1.1 allows for remote code execution via its download functions. These functions, which are used to download packages from URLs provided by users or retrieved from package index servers, are susceptible to code injection. If these functions are exposed to user-controlled inputs, such as package URLs, they can execute arbitrary commands on the system. The issue is fixed in version 70.0.

CVSS3: 8.8
0%
Низкий
11 месяцев назад
msrc логотип
CVSS3: 8.8
0%
Низкий
8 месяцев назад
debian логотип
CVE-2024-6345

A vulnerability in the package_index module of pypa/setuptools version ...

CVSS3: 8.8
0%
Низкий
11 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3055-1

Security update for python-setuptools

0%
Низкий
10 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3054-1

Security update for python3-setuptools

0%
Низкий
10 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:2950-1

Security update for python36-setuptools

0%
Низкий
10 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:2907-1

Security update for python310-setuptools

0%
Низкий
10 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:2906-1

Security update for python39-setuptools

0%
Низкий
10 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:2904-1

Security update for python312-setuptools

0%
Низкий
10 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:2900-1

Security update for python-setuptools

0%
Низкий
10 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:2899-1

Security update for python-setuptools

0%
Низкий
10 месяцев назад
redos логотип
ROS-20240729-22

Уязвимость python3-setuptools

CVSS3: 8.8
0%
Низкий
11 месяцев назад
rocky логотип
RLSA-2024:6726

Important: fence-agents security update

0%
Низкий
9 месяцев назад
rocky логотип
RLSA-2024:5533

Important: python3.12-setuptools security update

0%
Низкий
10 месяцев назад
rocky логотип
RLSA-2024:5532

Important: python3.11-setuptools security update

0%
Низкий
10 месяцев назад
rocky логотип
RLSA-2024:5531

Important: python3.12-setuptools security update

0%
Низкий
10 месяцев назад
rocky логотип
RLSA-2024:5530

Important: python-setuptools security update

0%
Низкий
10 месяцев назад
rocky логотип
RLSA-2024:5279

Important: python3.11-setuptools security update

0%
Низкий
10 месяцев назад

Уязвимостей на страницу