Search CVE reports
81 – 82 of 82 results
Some fixes available 17 of 18
In Python (aka CPython) up to 3.10.8, the mailcap module does not add escape characters into commands discovered in the system mailcap file. This may allow attackers to inject shell commands into applications that...
8 affected packages
python2.7, python3.10, python3.9, python3.4, python3.5...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
python2.7 | Not in release | Fixed | Fixed | Fixed |
python3.10 | Not in release | Fixed | Not in release | Not in release |
python3.9 | Not in release | Not in release | Fixed | Not in release |
python3.4 | Not in release | Not in release | Not in release | Not in release |
python3.5 | Not in release | Not in release | Not in release | Not in release |
python3.6 | Not in release | Not in release | Not in release | Fixed |
python3.7 | Not in release | Not in release | Not in release | Fixed |
python3.8 | Not in release | Not in release | Fixed | Fixed |
Some fixes available 2 of 28
Directory traversal vulnerability in the (1) extract and (2) extractall functions in the tarfile module in Python allows user-assisted remote attackers to overwrite arbitrary files via a .. (dot dot) sequence in filenames in a TAR...
16 affected packages
python2.3, python2.4, python2.5, python2.6, python3.0...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
python2.3 | — | — | — | — |
python2.4 | — | — | — | — |
python2.5 | — | — | — | — |
python2.6 | — | — | — | — |
python3.0 | — | — | — | — |
python3.1 | — | — | — | — |
python2.7 | — | Ignored | Not in release | Ignored |
python3.4 | — | Not in release | Not in release | Not in release |
python3.5 | — | Not in release | Not in release | Not in release |
python3.6 | — | Not in release | Not in release | Ignored |
python3.7 | — | Not in release | Not in release | Ignored |
python3.8 | — | Not in release | Ignored | Ignored |
python3.9 | — | Not in release | Not in release | Not in release |
python3.10 | — | Fixed | Not in release | Not in release |
python3.11 | — | Ignored | Not in release | Not in release |
python3.12 | — | Not in release | Not in release | Not in release |