vulnerability

Alma Linux: CVE-2021-33503: Moderate: python39:3.9 and python39-devel:3.9 security update (Multiple Advisories)

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Published
Jun 29, 2021
Added
May 13, 2022
Modified
Nov 14, 2024

Description

An issue was discovered in urllib3 before 1.26.5. When provided with a URL containing many @ characters in the authority component, the authority regular expression exhibits catastrophic backtracking, causing a denial of service if a URL were passed as a parameter or redirected to via an HTTP redirect.

Solution(s)

alma-upgrade-python38-asn1cryptoalma-upgrade-python38-atomicwritesalma-upgrade-python38-attrsalma-upgrade-python38-babelalma-upgrade-python38-cffialma-upgrade-python38-chardetalma-upgrade-python38-cryptographyalma-upgrade-python38-cythonalma-upgrade-python38-idnaalma-upgrade-python38-jinja2alma-upgrade-python38-markupsafealma-upgrade-python38-mod_wsgialma-upgrade-python38-more-itertoolsalma-upgrade-python38-numpyalma-upgrade-python38-numpy-docalma-upgrade-python38-numpy-f2pyalma-upgrade-python38-packagingalma-upgrade-python38-pluggyalma-upgrade-python38-plyalma-upgrade-python38-psutilalma-upgrade-python38-psycopg2alma-upgrade-python38-psycopg2-docalma-upgrade-python38-psycopg2-testsalma-upgrade-python38-pyalma-upgrade-python38-pycparseralma-upgrade-python38-pymysqlalma-upgrade-python38-pyparsingalma-upgrade-python38-pysocksalma-upgrade-python38-pytestalma-upgrade-python38-pytzalma-upgrade-python38-pyyamlalma-upgrade-python38-requestsalma-upgrade-python38-scipyalma-upgrade-python38-setuptoolsalma-upgrade-python38-setuptools-wheelalma-upgrade-python38-sixalma-upgrade-python38-urllib3alma-upgrade-python38-wcwidthalma-upgrade-python38-wheelalma-upgrade-python38-wheel-wheelalma-upgrade-python39-attrsalma-upgrade-python39-cffialma-upgrade-python39-chardetalma-upgrade-python39-cryptographyalma-upgrade-python39-cythonalma-upgrade-python39-idnaalma-upgrade-python39-iniconfigalma-upgrade-python39-mod_wsgialma-upgrade-python39-more-itertoolsalma-upgrade-python39-numpyalma-upgrade-python39-numpy-docalma-upgrade-python39-numpy-f2pyalma-upgrade-python39-packagingalma-upgrade-python39-pluggyalma-upgrade-python39-plyalma-upgrade-python39-psutilalma-upgrade-python39-psycopg2alma-upgrade-python39-psycopg2-docalma-upgrade-python39-psycopg2-testsalma-upgrade-python39-pyalma-upgrade-python39-pycparseralma-upgrade-python39-pymysqlalma-upgrade-python39-pyparsingalma-upgrade-python39-pysocksalma-upgrade-python39-pytestalma-upgrade-python39-pyyamlalma-upgrade-python39-requestsalma-upgrade-python39-scipyalma-upgrade-python39-setuptoolsalma-upgrade-python39-setuptools-wheelalma-upgrade-python39-sixalma-upgrade-python39-tomlalma-upgrade-python39-urllib3alma-upgrade-python39-wcwidthalma-upgrade-python39-wheelalma-upgrade-python39-wheel-wheel
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.