Revision Date: | 2017-11-17 | Version: | 1 | Title: | CVE-2017-1000158 on Ubuntu 18.04 LTS (bionic) - medium. | Description: | CPython (aka Python) up to 2.7.13 is vulnerable to an integer overflow in the PyString_DecodeEscape function in stringobject.c, resulting in heap-based buffer overflow (and possible arbitrary code execution)
| Family: | unix | Class: | vulnerability | Status: | | Reference(s): | CVE-2017-1000158
| Platform(s): | Ubuntu 18.04 LTS
| Product(s): | | Definition Synopsis | Ubuntu 18.04 LTS (bionic) is installed. AND Package Information
NOT idle-python2.7 package in bionic, while related to the CVE in some way, is not affected.
OR NOT libpython2.7 package in bionic, while related to the CVE in some way, is not affected.
OR NOT libpython2.7-minimal package in bionic, while related to the CVE in some way, is not affected.
OR NOT libpython2.7-stdlib package in bionic, while related to the CVE in some way, is not affected.
OR NOT libpython2.7-testsuite package in bionic, while related to the CVE in some way, is not affected.
OR NOT python2.7 package in bionic, while related to the CVE in some way, is not affected.
OR NOT python2.7-examples package in bionic, while related to the CVE in some way, is not affected.
OR NOT python2.7-minimal package in bionic, while related to the CVE in some way, is not affected.
OR NOT idle-python3.6 package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT libpython3.6 package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT libpython3.6-minimal package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT libpython3.6-stdlib package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT libpython3.6-testsuite package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT python3.6 package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT python3.6-examples package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT python3.6-minimal package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT python3.6-venv package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT idle-python3.7 package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT libpython3.7 package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT libpython3.7-minimal package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT libpython3.7-stdlib package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT libpython3.7-testsuite package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT python3.7 package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT python3.7-examples package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT python3.7-minimal package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
OR NOT python3.7-venv package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
|
|