Oval Definition:oval:com.ubuntu.bionic:def:201710001580000000
Revision Date:2017-11-17Version:1
Title:CVE-2017-1000158 on Ubuntu 18.04 LTS (bionic) - medium.
Description:CPython (aka Python) up to 2.7.13 is vulnerable to an integer overflow in the PyString_DecodeEscape function in stringobject.c, resulting in heap-based buffer overflow (and possible arbitrary code execution)
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-1000158
Platform(s):Ubuntu 18.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 18.04 LTS (bionic) is installed.
  • AND Package Information
  • NOT idle-python2.7 package in bionic, while related to the CVE in some way, is not affected.
  • OR NOT libpython2.7 package in bionic, while related to the CVE in some way, is not affected.
  • OR NOT libpython2.7-minimal package in bionic, while related to the CVE in some way, is not affected.
  • OR NOT libpython2.7-stdlib package in bionic, while related to the CVE in some way, is not affected.
  • OR NOT libpython2.7-testsuite package in bionic, while related to the CVE in some way, is not affected.
  • OR NOT python2.7 package in bionic, while related to the CVE in some way, is not affected.
  • OR NOT python2.7-examples package in bionic, while related to the CVE in some way, is not affected.
  • OR NOT python2.7-minimal package in bionic, while related to the CVE in some way, is not affected.
  • OR NOT idle-python3.6 package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT libpython3.6 package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT libpython3.6-minimal package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT libpython3.6-stdlib package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT libpython3.6-testsuite package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT python3.6 package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT python3.6-examples package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT python3.6-minimal package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT python3.6-venv package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT idle-python3.7 package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT libpython3.7 package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT libpython3.7-minimal package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT libpython3.7-stdlib package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT libpython3.7-testsuite package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT python3.7 package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT python3.7-examples package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT python3.7-minimal package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • OR NOT python3.7-venv package in bionic, while related to the CVE in some way, is not affected (note: 'code not present').
  • BACK