Known vulnerabilities in python-setuptools (Red Hat package)
Vendor:
Red Hat Inc.
Software:
python-setuptools (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:python-setuptools_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
3
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.2
Breakdown by Severity Chart
53.0.0-12.el9_2.3
0.9.8-7.el7_9.2
53.0.0-12.el9_4.2
53.0.0-13.el9_0
39.2.0-7.el8_8.3
39.2.0-5.el8_2.2
39.2.0-6.el8_4.2
39.2.0-7.el8_6.2
53.0.0-13.el9_6.1
69.0.3-12.el10_0
39.2.0-5.el8_2.1
0.9.8-7.el7_9.1
53.0.0-12.el9_4.1
39.2.0-8.el8_10
53.0.0-12.el9_2.1
39.2.0-6.el8_4.1
39.2.0-7.el8_8.1
53.0.0-10.el9_1.1
39.2.0-6.el8_7.1
17.1.1-3.el7aos
17.1.1-4.el7
17.1.1-3.el7
0.6.10-4.el6_9
0.6.10-3.el6
Vulnerabilities (3)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU109840 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2025-47273 |
CWE-22 | High | 0.9.8-7.el7_9.2, 39.2.0-5.el8_2.2, 39.2.0-6.el8_4.2, 39.2.0-7.el8_6.2, 39.2.0-7.el8_8.3, 53.0.0-12.el9_2.3, 53.0.0-12.el9_4.2, 53.0.0-13.el9_0, 53.0.0-13.el9_6.1, 69.0.3-12.el10_0 | 27.05.2025 |
SB2025052721 SB2025052734 SB2025052736 and 112 more |
||
| #VU95339 - Improper Control of Generation of Code ('Code Injection') CVE-2024-6345 |
CWE-94 | High | 0.9.8-7.el7_9.1, 39.2.0-5.el8_2.1, 39.2.0-6.el8_4.1, 39.2.0-7.el8_8.1, 39.2.0-8.el8_10, 53.0.0-12.el9_2.1, 53.0.0-12.el9_4.1 | 05.08.2024 |
SB2024080590 SB2024080593 SB2024080594 and 160 more |
||
| #VU71379 - Incorrect Regular Expression CVE-2022-40897 |
CWE-185 | Medium | 39.2.0-6.el8_7.1, 53.0.0-10.el9_1.1 | 20.01.2023 |
SB2023012008 SB2023012015 SB2023012016 and 99 more |