Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
146377 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.122870
Categoría:Oracle Linux Local Security Checks
Título:Oracle: Security Advisory (ELSA-2015-1064)
Resumen:The remote host is missing an update for the 'python27, python27-python, python27-python-pip, python27-python-setuptools, python27-python-simplejson, python27-python-wheel' package(s) announced via the ELSA-2015-1064 advisory.
Descripción:Summary:
The remote host is missing an update for the 'python27, python27-python, python27-python-pip, python27-python-setuptools, python27-python-simplejson, python27-python-wheel' package(s) announced via the ELSA-2015-1064 advisory.

Vulnerability Insight:
python27
[1.1-17]
- Require python-pip and python-wheel (note: in rh-python34
this is not necessary, because 'python' depends on these).

python27-python
[2.7.8-3]
- Add httplib fix for CVE-2013-1752
Resolves: rhbz#1187779

[2.7.8-2]
- Fix %check
unset DISPLAY
section not failing properly on failed test
- Fixed CVE-2013-1752, CVE-2013-1753
Resolves: rhbz#1187779

[2.7.8-1]
- Update to 2.7.8.
Resolves: rhbz#1167912
- Make python-devel depend on scl-utils-build.
Resolves: rhbz#1170993

python27-python-pip
- New Package added

python27-python-setup tools
[0.9.8-3]
- Enhance patch restoring proxy support in SSL connections
Resolves: rhbz#1222507

python27-python-simplejson
[3.2.0-2]
- Fix CVE-2014-461, add boundary checks
Resolves: rhbz#1222534

python27-python-wheel
- New Package added

Affected Software/OS:
'python27, python27-python, python27-python-pip, python27-python-setuptools, python27-python-simplejson, python27-python-wheel' package(s) on Oracle Linux 6, Oracle Linux 7.

Solution:
Please install the updated package(s).

CVSS Score:
7.5

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:P/A:P

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2013-1752
Common Vulnerability Exposure (CVE) ID: CVE-2013-1753
Common Vulnerability Exposure (CVE) ID: CVE-2014-1912
http://lists.apple.com/archives/security-announce/2015/Aug/msg00001.html
BugTraq ID: 65379
http://www.securityfocus.com/bid/65379
Debian Security Information: DSA-2880 (Google Search)
http://www.debian.org/security/2014/dsa-2880
http://www.exploit-db.com/exploits/31875
https://security.gentoo.org/glsa/201503-10
http://pastebin.com/raw.php?i=GHXSmNEg
https://www.trustedsec.com/february-2014/python-remote-code-execution-socket-recvfrom_into/
http://www.openwall.com/lists/oss-security/2014/02/12/16
RedHat Security Advisories: RHSA-2015:1064
http://rhn.redhat.com/errata/RHSA-2015-1064.html
RedHat Security Advisories: RHSA-2015:1330
http://rhn.redhat.com/errata/RHSA-2015-1330.html
http://www.securitytracker.com/id/1029831
SuSE Security Announcement: openSUSE-SU-2014:0518 (Google Search)
http://lists.opensuse.org/opensuse-updates/2014-04/msg00035.html
SuSE Security Announcement: openSUSE-SU-2014:0597 (Google Search)
http://lists.opensuse.org/opensuse-updates/2014-05/msg00008.html
http://www.ubuntu.com/usn/USN-2125-1
Common Vulnerability Exposure (CVE) ID: CVE-2014-4616
BugTraq ID: 68119
http://www.securityfocus.com/bid/68119
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=752395
https://hackerone.com/reports/12297
http://openwall.com/lists/oss-security/2014/06/24/7
SuSE Security Announcement: openSUSE-SU-2014:0890 (Google Search)
http://lists.opensuse.org/opensuse-updates/2014-07/msg00015.html
Common Vulnerability Exposure (CVE) ID: CVE-2014-4650
http://bugs.python.org/issue21766
http://openwall.com/lists/oss-security/2014/06/26/3
RedHat Security Advisories: Red Hat
https://access.redhat.com/security/cve/cve-2014-4650
Common Vulnerability Exposure (CVE) ID: CVE-2014-7185
BugTraq ID: 70089
http://www.securityfocus.com/bid/70089
http://lists.fedoraproject.org/pipermail/package-announce/2014-October/139663.html
http://www.openwall.com/lists/oss-security/2014/09/23/5
http://www.openwall.com/lists/oss-security/2014/09/25/47
SuSE Security Announcement: openSUSE-SU-2014:1292 (Google Search)
http://lists.opensuse.org/opensuse-updates/2014-10/msg00016.html
XForce ISS Database: python-bufferobject-overflow(96193)
https://exchange.xforce.ibmcloud.com/vulnerabilities/96193
CopyrightCopyright (C) 2016 Greenbone AG

Esta es sólo una de 146377 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.