Known vulnerabilities in python3 (Red Hat package) - page 2
Vendor:
Red Hat Inc.
Software:
python3 (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:python3_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
44
Public exploits:
3
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
3.6.8-78.el8_10
3.9.25-7.el9_8.3
3.6.8-21.el7_9.7
3.6.8-39.el8_4.12
3.6.8-47.el8_6.14
3.6.8-51.el8_8.16
3.9.25-7.el9_8.2
3.6.8-77.el8_10
3.6.8-21.el7_9.6
3.9.25-7.el9_8
3.6.8-39.el8_4.11
3.6.8-51.el8_8.15
3.6.8-47.el8_6.13
3.9.25-3.el9_7.3
3.6.8-76.el8_10
3.6.8-21.el7_9.5
3.6.8-39.el8_4.10
3.6.8-24.el8_2.7
3.6.8-51.el8_8.14
3.9.25-3.el9_7.2
3.6.8-75.el8_10
3.6.8-21.el7_9.4
3.6.8-51.el8_8.13
3.6.8-74.el8_10
3.9.25-3.el9_7.1
3.6.8-39.el8_4.9
3.6.8-24.el8_2.6
3.6.8-47.el8_6.11
3.6.8-21.el7_9.3
3.6.8-47.el8_6.10
3.6.8-51.el8_8.12
3.6.8-73.el8_10
3.6.8-72.el8_10
3.6.8-24.el8_2.5
3.9.25-3.el9_7
3.6.8-39.el8_4.8
3.9.25-2.el9_7
3.9.23-2.el9
3.6.8-24.el8_2.4
3.6.8-51.el8_8.11
3.6.8-39.el8_4.7
3.6.8-21.el7_9.2
3.6.8-47.el8_6.9
3.9.21-2.el9
3.9.21-2.el9_6.2
3.9.21-2.el9_6.1
3.6.8-51.el8_8.10
3.6.8-47.el8_6.8
3.6.8-70.el8_10
3.6.8-21.el7_9.1
3.6.8-69.el8_10
3.6.8-10.el7_7.1
3.6.8-47.el8_6.7
3.6.8-67.el8_10
3.6.8-39.el8_4.5
3.6.8-47.el8_6.6
3.6.8-24.el8_2.3
3.6.8-51.el8_8.6
3.6.8-62.el8_10
3.6.8-51.el8_8.4
3.6.8-47.el8_6.4
3.6.8-56.el8_9.3
3.6.8-56.el8_9
3.6.8-21.el7_9
3.6.8-39.el8_4.3
3.6.8-15.1.el8_1.2
3.6.8-51.el8_8.2
3.6.8-24.el8_2.2
3.6.8-47.el8_6.2
3.6.8-15.1.el8_1.1
3.6.8-24.el8_2.1
3.6.8-39.el8_4.2
3.6.8-47.el8_6.1
3.6.8-51.el8_8.1
3.6.8-19.el7_9
3.6.8-48.el8_7.1
3.6.8-41.el8
3.6.8-39.el8_4
3.6.8-47.el8_6
3.6.8-45.el8
3.6.8-24.el8_2
3.6.8-37.el8
3.6.8-18.el7
3.6.8-31.el8
3.6.8-17.el7
3.6.8-23.el8
3.6.8-13.el7
3.6.8-15.1.el8
3.6.8-2.el8_0
Vulnerabilities (44)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU82980 - Improper input validation CVE-2023-27043 |
CWE-20 | Medium | 3.6.8-47.el8_6.4, 3.6.8-51.el8_8.4, 3.6.8-56.el8_9.3 | 10.11.2023 |
SB2023041957 SB2023111064 SB2023111315 and 120 more |
||
| #VU82078 - Use After Free CVE-2022-48560 |
CWE-416 | Medium | 3.6.8-47.el8_6.4, 3.6.8-51.el8_8.4 | 17.10.2023 |
SB2023101708 SB2023101712 SB20231017145 and 29 more |
||
| #VU80228 - Cleartext Transmission of Sensitive Information CVE-2023-40217 |
CWE-319 | Medium | 3.6.8-15.1.el8_1.2, 3.6.8-21.el7_9, 3.6.8-24.el8_2.2, 3.6.8-39.el8_4.3, 3.6.8-47.el8_6.2, 3.6.8-51.el8_8.2 | 01.09.2023 |
SB2023090142 SB2023090143 SB2023090144 and 139 more |
||
| #VU72618 - Improper input validation CVE-2023-24329 |
CWE-20 | Medium | 3.6.8-15.1.el8_1.1, 3.6.8-19.el7_9, 3.6.8-24.el8_2.1, 3.6.8-39.el8_4.2, 3.6.8-47.el8_6.1, 3.6.8-51.el8_8.1 | 28.02.2023 |
SB2023022819 SB2023022822 SB2023030832 and 158 more |
||
| #VU69392 - Resource exhaustion CVE-2022-45061 |
CWE-400 | Medium | 3.6.8-47.el8_6.4, 3.6.8-48.el8_7.1 | 16.11.2022 |
SB2022111650 SB2022112824 SB2022112856 and 125 more |
||
| #VU67760 - Type conversion CVE-2020-10735 |
CWE-704 | Medium | 3.6.8-47.el8_6.4, 3.6.8-48.el8_7.1 | 29.09.2022 |
SB2022092968 SB2022092970 SB2022093032 and 86 more |
||
| #VU67591 - URL Redirection to Untrusted Site ('Open Redirect') CVE-2021-28861 |
CWE-601 | Low | 3.6.8-48.el8_7.1 | 22.09.2022 |
SB2022092243 SB2022092244 SB2022093032 and 76 more |
||
| #VU67583 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2007-4559 |
CWE-22 | High | 3.6.8-47.el8_6.4, 3.6.8-56.el8_9 | 22.09.2022 |
SB2007082801 SB2022120206 SB2023060825 and 68 more |
||
| #VU64573 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2015-20107 |
CWE-78 | High | 3.6.8-47.el8_6 | 22.06.2022 |
SB2022062206 SB2022062207 SB2022062436 and 85 more |
||
| #VU61681 - Server-Side Request Forgery (SSRF) CVE-2021-4189 |
CWE-918 | Medium | 3.6.8-45.el8 | 29.03.2022 |
SB2022032904 SB2022032905 SB2022032907 and 42 more |
||
| #VU61675 - Improper Neutralization of CRLF Sequences ('CRLF Injection') CVE-2022-0391 |
CWE-93 | Medium | 3.6.8-47.el8_6 | 29.03.2022 |
SB2022032903 SB2022032905 SB2022032907 and 49 more |
||
| #VU60098 - Improper input validation CVE-2021-3426 |
CWE-20 | Medium | 3.6.8-41.el8 | 27.01.2022 |
SB2022012753 SB2022032905 SB2022032907 and 34 more |
||
| #VU59089 - Loop with Unreachable Exit Condition ('Infinite Loop') CVE-2021-3737 |
CWE-835 | Low | 3.6.8-45.el8 | 22.12.2021 |
SB2021122214 SB2022050235 SB2022051138 and 58 more |
||
| #VU58295 - Resource Management Errors CVE-2021-3733 |
CWE-399 | Low | 3.6.8-39.el8_4 | 23.11.2021 |
SB2021112309 SB2021122214 SB2022050235 and 41 more |
||
| #VU50814 - Improper input validation CVE-2021-23336 |
CWE-20 | Medium | 3.6.8-37.el8 | 19.02.2021 |
SB2021021907 SB2021022001 SB2021022706 and 56 more |
||
| #VU50621 - Improper Control of Generation of Code ('Code Injection') CVE-2020-27619 |
CWE-94 | Medium | 3.6.8-37.el8 | 11.02.2021 |
SB2020112330 SB2021032307 SB2021032607 and 24 more |
||
| #VU49973 - Memory corruption CVE-2021-3177 |
CWE-119 | High | 3.6.8-37.el8 | 19.01.2021 |
SB2021012516 SB2021012517 SB2021022418 and 54 more |
||
| #VU48592 - Improper Neutralization of CRLF Sequences ('CRLF Injection') CVE-2020-26116 |
CWE-93 | Medium | 3.6.8-24.el8_2, 3.6.8-37.el8 | 27.09.2020 |
SB2020092711 SB2020112308 SB2020112309 and 34 more |
||
| #VU32881 - Loop with Unreachable Exit Condition ('Infinite Loop') CVE-2019-20907 |
CWE-835 | Medium | 3.6.8-18.el7, 3.6.8-31.el8 | 29.07.2020 |
SB2020071324 SB2020080201 SB2020082408 and 53 more |
||
| #VU29544 - Resource exhaustion CVE-2020-14422 |
CWE-400 | Medium | 3.6.8-18.el7, 3.6.8-31.el8 | 07.07.2020 |
SB2020070704 SB2020070705 SB2020070710 and 40 more |
Showing elements 21 - 40 out of 44