vulnerability
SUSE: CVE-2013-5123: SUSE Linux Security Advisory
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
4 | (AV:N/AC:M/Au:N/C:N/I:P/A:N) | 11/05/2019 | 08/09/2024 | 08/09/2024 |
Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:P/A:N)
Published
11/05/2019
Added
08/09/2024
Modified
08/09/2024
Description
The mirroring support (-M, --use-mirrors) in Python Pip before 1.5 uses insecure DNS querying and authenticity checks which allows attackers to perform man-in-the-middle attacks.
Solution(s)
suse-upgrade-python-jmespathsuse-upgrade-python-jsonschemasuse-upgrade-python-paramikosuse-upgrade-python-pipsuse-upgrade-python-plysuse-upgrade-python2-pipsuse-upgrade-python3-jmespathsuse-upgrade-python3-jsonschemasuse-upgrade-python3-paramikosuse-upgrade-python3-pipsuse-upgrade-python3-plysuse-upgrade-python39-pipsuse-upgrade-python39-setuptools

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.