Known vulnerabilities in python27-python (Red Hat package)

Software CPE: cpe:2.3:o:red_hat:python27-python_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 13
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.8

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting python27-python (Red Hat package) python27-python (Red Hat package) is affected by 13 known vulnerabilities: 8 medium, 5 low Critical High Medium Low

Vulnerabilities (13)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU61681 - Server-Side Request Forgery (SSRF)
CVE-2021-4189
CWE-918 Medium
No
No
2.7.18-4.el7 29.03.2022 SB2022032904
SB2022032905
SB2022032907
and 42 more
#VU61675 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2022-0391
CWE-93 Medium
No
No
2.7.18-4.el7 29.03.2022 SB2022032903
SB2022032905
SB2022032907
and 49 more
#VU59089 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2021-3737
CWE-835 Low
No
No
2.7.18-4.el7 22.12.2021 SB2021122214
SB2022050235
SB2022051138
and 58 more
#VU58295 - Resource Management Errors
CVE-2021-3733
CWE-399 Low
No
No
2.7.18-4.el7 23.11.2021 SB2021112309
SB2021122214
SB2022050235
and 41 more
#VU23000 - Exposure of sensitive information to an unauthorized actor
CVE-2016-10745
CWE-200 Low
No
No
2.7.16-4.el6, 2.7.16-4.el7 26.11.2019 SB2016123002
SB2019112613
SB2019120317
and 7 more
#VU20071 - Improper input validation
CVE-2019-10160
CWE-20 Low
No
No
2.7.16-6.el6, 2.7.16-6.el7 13.08.2019 SB2019081309
SB2019081310
SB2019062005
and 20 more
#VU18829 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2019-9740
CWE-93 Medium
No
No
2.7.16-4.el6, 2.7.16-4.el7 19.06.2019 SB2019031318
SB2019062812
SB2019072603
and 32 more
#VU18828 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2019-9947
CWE-93 Medium
No
No
2.7.16-4.el6, 2.7.16-4.el7 19.06.2019 SB2019031318
SB2019062812
SB2019072603
and 22 more
#VU18827 - Exposed Dangerous Method or Function
CVE-2019-9948
CWE-749 Medium
No
No
2.7.16-6.el6, 2.7.16-6.el7 19.06.2019 SB2019031318
SB2019061903
SB2019042504
and 18 more
#VU18355 - Improper input validation
CVE-2019-9636
CWE-20 Medium
No
No
2.7.13-4.el6, 2.7.13-6.el7 27.04.2019 SB2019042703
SB2019050611
SB2019051007
and 56 more
#VU15760 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2018-14647
CWE-611 Low
No
No
2.7.16-4.el6, 2.7.16-4.el7 08.11.2018 SB2018110808
SB2018122106
SB2018092802
and 35 more
#VU12283 - Improper input validation
CVE-2018-1060
CWE-20 Medium
No
No
2.7.16-4.el6, 2.7.16-4.el7 27.04.2018 SB2018042706
SB2018111109
SB2018120712
and 36 more
#VU12282 - Improper input validation
CVE-2018-1061
CWE-20 Medium
No
No
2.7.16-4.el6, 2.7.16-4.el7 27.04.2018 SB2018042706
SB2018111109
SB2018120712
and 20 more