vulnerability

Rocky Linux: CVE-2019-11236: python27-2.7 (Multiple Advisories)

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:P/A:N)
Published
04/15/2019
Added
03/12/2024
Modified
11/27/2024

Description

In the urllib3 library through 1.24.1 for Python, CRLF injection is possible if the attacker controls the request parameter.

Solution(s)

rocky-upgrade-cython-debugsourcerocky-upgrade-python-coverage-debugsourcerocky-upgrade-python-psycopg2-debuginforocky-upgrade-python-psycopg2-debugsourcerocky-upgrade-python-psycopg2-docrocky-upgrade-python-pymongo-debuginforocky-upgrade-python-pymongo-debugsourcerocky-upgrade-python2-bsonrocky-upgrade-python2-bson-debuginforocky-upgrade-python2-coveragerocky-upgrade-python2-coverage-debuginforocky-upgrade-python2-cythonrocky-upgrade-python2-cython-debuginforocky-upgrade-python2-markupsaferocky-upgrade-python2-psycopg2rocky-upgrade-python2-psycopg2-debugrocky-upgrade-python2-psycopg2-debug-debuginforocky-upgrade-python2-psycopg2-debuginforocky-upgrade-python2-psycopg2-testsrocky-upgrade-python2-pymongorocky-upgrade-python2-pymongo-debuginforocky-upgrade-python2-pymongo-gridfsrocky-upgrade-python2-pyyamlrocky-upgrade-python2-pyyaml-debuginforocky-upgrade-python2-scipyrocky-upgrade-python2-scipy-debuginforocky-upgrade-pyyaml-debugsourcerocky-upgrade-scipy-debugsource
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.