vulnerability
Huawei EulerOS: CVE-2020-8492: python security update
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 7 | (AV:N/AC:M/Au:N/C:N/I:N/A:C) | Jan 30, 2020 | Apr 16, 2020 | Apr 1, 2026 |
Severity
7
CVSS
(AV:N/AC:M/Au:N/C:N/I:N/A:C)
Published
Jan 30, 2020
Added
Apr 16, 2020
Modified
Apr 1, 2026
Description
Python 2.7 through 2.7.17, 3.5 through 3.5.9, 3.6 through 3.6.10, 3.7 through 3.7.6, and 3.8 through 3.8.1 allows an HTTP server to conduct Regular Expression Denial of Service (ReDoS) attacks against a client because of urllib.request.AbstractBasicAuthHandler catastrophic backtracking.
Solutions
huawei-euleros-2_0_sp3-upgrade-pythonhuawei-euleros-2_0_sp3-upgrade-python-develhuawei-euleros-2_0_sp3-upgrade-python-libshuawei-euleros-2_0_sp3-upgrade-tkinter
Rapid7 Labs
2026 Global Threat Landscape Report
The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.