Oval Definition:oval:org.opensuse.security:def:50483
Revision Date:2020-12-01Version:1
Title:Security update for python (Moderate)
Description:

This update for python fixes the following issues:

Security issues fixed:

- CVE-2019-9947: Fixed an insufficient validation of URL paths with embedded whitespace or control characters that could allow HTTP header injections. (bsc#1130840) - CVE-2019-16056: Fixed a parser issue in the email module. (bsc#1149955) - CVE-2019-16935: Fixed a reflected XSS in python/Lib/DocXMLRPCServer.py (bsc#1153238).
Family:unixClass:patch
Status:Reference(s):1027519
1079730
1082007
1082008
1082009
1082010
1082011
1082014
1082058
1087433
1087434
1087436
1087437
1087440
1087441
1098403
1103203
1103367
1108606
1111025
1112530
1112532
1115717
1117665
1119991
1120946
1121626
1125113
1128935
1128937
1129180
1129186
1130028
1130611
1130617
1130620
1130622
1130623
1130627
1130746
1130840
1132091
1133100
1133790
1134156
1136446
1137597
1140359
1140747
1141063
1143794
1144087
1145379
1145427
1145436
1145774
1146873
1146882
1146884
1149811
1149955
1152497
1152506
1153238
1153451
1153459
1157047
1157888
1158003
1158004
1158005
1158006
1158007
1158809
1160467
1160468
1167070
1169473
1169851
1173466
1173467
1173469
1174628
CVE-2017-17742
CVE-2018-1000073
CVE-2018-1000074
CVE-2018-1000075
CVE-2018-1000076
CVE-2018-1000077
CVE-2018-1000078
CVE-2018-1000079
CVE-2018-10916
CVE-2018-12207
CVE-2018-16395
CVE-2018-16396
CVE-2018-17000
CVE-2018-19210
CVE-2018-20126
CVE-2018-6914
CVE-2018-8777
CVE-2018-8778
CVE-2018-8779
CVE-2018-8780
CVE-2019-11023
CVE-2019-11135
CVE-2019-11477
CVE-2019-11478
CVE-2019-12068
CVE-2019-12973
CVE-2019-14378
CVE-2019-14811
CVE-2019-14812
CVE-2019-14813
CVE-2019-14817
CVE-2019-14896
CVE-2019-14897
CVE-2019-1551
CVE-2019-15890
CVE-2019-16056
CVE-2019-16935
CVE-2019-17041
CVE-2019-17042
CVE-2019-19577
CVE-2019-19578
CVE-2019-19579
CVE-2019-19580
CVE-2019-19581
CVE-2019-19582
CVE-2019-19583
CVE-2019-3835
CVE-2019-3839
CVE-2019-3846
CVE-2019-6128
CVE-2019-7663
CVE-2019-8320
CVE-2019-8321
CVE-2019-8322
CVE-2019-8323
CVE-2019-8324
CVE-2019-8325
CVE-2019-9704
CVE-2019-9705
CVE-2019-9947
CVE-2020-10704
CVE-2020-14344
CVE-2020-15304
CVE-2020-15305
CVE-2020-15306
SUSE-SU-2019:0643-1
SUSE-SU-2019:0786-1
SUSE-SU-2019:1267-2
SUSE-SU-2019:1389-2
SUSE-SU-2019:1804-1
SUSE-SU-2019:2460-1
SUSE-SU-2019:2743-1
SUSE-SU-2019:2937-1
SUSE-SU-2019:2955-1
SUSE-SU-2019:3338-1
SUSE-SU-2020:0064-1
SUSE-SU-2020:1133-1
Platform(s):SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Module for Basesystem 15
SUSE Linux Enterprise Module for Legacy Software 15
SUSE Linux Enterprise Module for Live Patching 15
SUSE Linux Enterprise Module for Live Patching 15 SP1
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1
SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2
SUSE Linux Enterprise Module for Python2 packages 15 SP1
SUSE Linux Enterprise Module for Server Applications 15 SP1
SUSE Linux Enterprise Module for Web Scripting 15 SP1
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 15-LTSS
SUSE Linux Enterprise Server for SAP Applications 15
SUSE Linux Enterprise Workstation Extension 15
SUSE Linux Enterprise Workstation Extension 15 SP1
SUSE Linux Enterprise Workstation Extension 15 SP2
SUSE OpenStack Cloud 6
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • giflib-4.1.6-13 is installed
  • OR giflib-32bit-4.1.6-13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP4 is installed
  • AND Package Information
  • kernel-default-3.0.101-68 is installed
  • OR kernel-default-base-3.0.101-68 is installed
  • OR kernel-default-devel-3.0.101-68 is installed
  • OR kernel-default-extra-3.0.101-68 is installed
  • OR kernel-pae-3.0.101-68 is installed
  • OR kernel-pae-base-3.0.101-68 is installed
  • OR kernel-pae-devel-3.0.101-68 is installed
  • OR kernel-pae-extra-3.0.101-68 is installed
  • OR kernel-source-3.0.101-68 is installed
  • OR kernel-syms-3.0.101-68 is installed
  • OR kernel-trace-3.0.101-68 is installed
  • OR kernel-trace-devel-3.0.101-68 is installed
  • OR kernel-xen-3.0.101-68 is installed
  • OR kernel-xen-base-3.0.101-68 is installed
  • OR kernel-xen-devel-3.0.101-68 is installed
  • OR kernel-xen-extra-3.0.101-68 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND Package Information
  • libpango-1_0-0-1.36.3-4 is installed
  • OR libpango-1_0-0-32bit-1.36.3-4 is installed
  • OR pango-modules-1.36.3-4 is installed
  • OR pango-modules-32bit-1.36.3-4 is installed
  • OR typelib-1_0-Pango-1_0-1.36.3-4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND Package Information
  • e2fsprogs-1.42.11-7 is installed
  • OR libcom_err2-1.42.11-7 is installed
  • OR libcom_err2-32bit-1.42.11-7 is installed
  • OR libext2fs2-1.42.11-7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • cups-1.7.5-12 is installed
  • OR cups-client-1.7.5-12 is installed
  • OR cups-libs-1.7.5-12 is installed
  • OR cups-libs-32bit-1.7.5-12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND clamav-0.99.2-32 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • libIlmImf-Imf_2_1-21-2.1.0-6.3 is installed
  • OR libIlmImf-Imf_2_1-21-32bit-2.1.0-6.3 is installed
  • OR openexr-2.1.0-6.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 is installed
  • AND Package Information
  • libpython2_7-1_0-2.7.14-7.24 is installed
  • OR python-2.7.14-7.24 is installed
  • OR python-base-2.7.14-7.24 is installed
  • OR python-curses-2.7.14-7.24 is installed
  • OR python-devel-2.7.14-7.24 is installed
  • OR python-gdbm-2.7.14-7.24 is installed
  • OR python-xml-2.7.14-7.24 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Legacy Software 15 is installed
  • AND Package Information
  • libopenssl-1_0_0-devel-1.0.2p-3.25 is installed
  • OR libopenssl1_0_0-1.0.2p-3.25 is installed
  • OR openssl-1_0_0-1.0.2p-3.25 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Live Patching 15 is installed
  • AND Package Information
  • kernel-livepatch-4_12_14-25_22-default-6-2 is installed
  • OR kernel-livepatch-SLE15_Update_6-6-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Live Patching 15 SP1 is installed
  • AND Package Information
  • kernel-livepatch-4_12_14-197_21-default-4-2 is installed
  • OR kernel-livepatch-SLE15-SP1_Update_6-4-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 is installed
  • AND tiff-4.0.9-5.27 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP1 is installed
  • AND Package Information
  • cronie-1.5.1-6.7 is installed
  • OR cronie-anacron-1.5.1-6.7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Open Buildservice Development Tools 15 SP2 is installed
  • AND Package Information
  • libX11-1.6.5-3.9 is installed
  • OR libX11-devel-32bit-1.6.5-3.9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Python2 packages 15 SP1 is installed
  • AND Package Information
  • libsamba-policy0-4.9.5+git.317.6d82fb3918b-3.35 is installed
  • OR samba-4.9.5+git.317.6d82fb3918b-3.35 is installed
  • OR samba-ad-dc-4.9.5+git.317.6d82fb3918b-3.35 is installed
  • OR samba-dsdb-modules-4.9.5+git.317.6d82fb3918b-3.35 is installed
  • OR samba-libs-python-4.9.5+git.317.6d82fb3918b-3.35 is installed
  • OR samba-python-4.9.5+git.317.6d82fb3918b-3.35 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Server Applications 15 SP1 is installed
  • AND Package Information
  • graphviz-addons-2.40.1-6.3 is installed
  • OR graphviz-tcl-2.40.1-6.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Web Scripting 15 SP1 is installed
  • AND Package Information
  • apache2-mod_php7-7.2.5-4.52 is installed
  • OR php7-7.2.5-4.52 is installed
  • OR php7-bcmath-7.2.5-4.52 is installed
  • OR php7-bz2-7.2.5-4.52 is installed
  • OR php7-calendar-7.2.5-4.52 is installed
  • OR php7-ctype-7.2.5-4.52 is installed
  • OR php7-curl-7.2.5-4.52 is installed
  • OR php7-dba-7.2.5-4.52 is installed
  • OR php7-devel-7.2.5-4.52 is installed
  • OR php7-dom-7.2.5-4.52 is installed
  • OR php7-enchant-7.2.5-4.52 is installed
  • OR php7-exif-7.2.5-4.52 is installed
  • OR php7-fastcgi-7.2.5-4.52 is installed
  • OR php7-fileinfo-7.2.5-4.52 is installed
  • OR php7-fpm-7.2.5-4.52 is installed
  • OR php7-ftp-7.2.5-4.52 is installed
  • OR php7-gd-7.2.5-4.52 is installed
  • OR php7-gettext-7.2.5-4.52 is installed
  • OR php7-gmp-7.2.5-4.52 is installed
  • OR php7-iconv-7.2.5-4.52 is installed
  • OR php7-intl-7.2.5-4.52 is installed
  • OR php7-json-7.2.5-4.52 is installed
  • OR php7-ldap-7.2.5-4.52 is installed
  • OR php7-mbstring-7.2.5-4.52 is installed
  • OR php7-mysql-7.2.5-4.52 is installed
  • OR php7-odbc-7.2.5-4.52 is installed
  • OR php7-opcache-7.2.5-4.52 is installed
  • OR php7-openssl-7.2.5-4.52 is installed
  • OR php7-pcntl-7.2.5-4.52 is installed
  • OR php7-pdo-7.2.5-4.52 is installed
  • OR php7-pear-7.2.5-4.52 is installed
  • OR php7-pear-Archive_Tar-7.2.5-4.52 is installed
  • OR php7-pgsql-7.2.5-4.52 is installed
  • OR php7-phar-7.2.5-4.52 is installed
  • OR php7-posix-7.2.5-4.52 is installed
  • OR php7-shmop-7.2.5-4.52 is installed
  • OR php7-snmp-7.2.5-4.52 is installed
  • OR php7-soap-7.2.5-4.52 is installed
  • OR php7-sockets-7.2.5-4.52 is installed
  • OR php7-sodium-7.2.5-4.52 is installed
  • OR php7-sqlite-7.2.5-4.52 is installed
  • OR php7-sysvmsg-7.2.5-4.52 is installed
  • OR php7-sysvsem-7.2.5-4.52 is installed
  • OR php7-sysvshm-7.2.5-4.52 is installed
  • OR php7-tokenizer-7.2.5-4.52 is installed
  • OR php7-wddx-7.2.5-4.52 is installed
  • OR php7-xmlreader-7.2.5-4.52 is installed
  • OR php7-xmlrpc-7.2.5-4.52 is installed
  • OR php7-xmlwriter-7.2.5-4.52 is installed
  • OR php7-xsl-7.2.5-4.52 is installed
  • OR php7-zip-7.2.5-4.52 is installed
  • OR php7-zlib-7.2.5-4.52 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND python-libxml2-2.9.1-10 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • git-2.12.3-27.5 is installed
  • OR git-core-2.12.3-27.5 is installed
  • OR git-doc-2.12.3-27.5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • apache-commons-daemon-1.0.15-4 is installed
  • OR apache-commons-daemon-javadoc-1.0.15-4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • kernel-default-4.4.121-92.92 is installed
  • OR kernel-default-base-4.4.121-92.92 is installed
  • OR kernel-default-devel-4.4.121-92.92 is installed
  • OR kernel-devel-4.4.121-92.92 is installed
  • OR kernel-macros-4.4.121-92.92 is installed
  • OR kernel-source-4.4.121-92.92 is installed
  • OR kernel-syms-4.4.121-92.92 is installed
  • OR kgraft-patch-4_4_121-92_92-default-1-3.7 is installed
  • OR kgraft-patch-SLE12-SP2_Update_24-1-3.7 is installed
  • OR lttng-modules-2.7.1-9.4 is installed
  • OR lttng-modules-kmp-default-2.7.1_k4.4.121_92.92-9.4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • libopenssl-devel-1.0.2j-60.30 is installed
  • OR libopenssl1_0_0-1.0.2j-60.30 is installed
  • OR libopenssl1_0_0-32bit-1.0.2j-60.30 is installed
  • OR libopenssl1_0_0-hmac-1.0.2j-60.30 is installed
  • OR libopenssl1_0_0-hmac-32bit-1.0.2j-60.30 is installed
  • OR openssl-1.0.2j-60.30 is installed
  • OR openssl-doc-1.0.2j-60.30 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • libwireshark9-2.4.10-48.32 is installed
  • OR libwiretap7-2.4.10-48.32 is installed
  • OR libwscodecs1-2.4.10-48.32 is installed
  • OR libwsutil8-2.4.10-48.32 is installed
  • OR wireshark-2.4.10-48.32 is installed
  • OR wireshark-gtk-2.4.10-48.32 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND libapr1-1.5.1-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • evince-3.20.2-6.27 is installed
  • OR evince-browser-plugin-3.20.2-6.27 is installed
  • OR evince-lang-3.20.2-6.27 is installed
  • OR evince-plugin-djvudocument-3.20.2-6.27 is installed
  • OR evince-plugin-dvidocument-3.20.2-6.27 is installed
  • OR evince-plugin-pdfdocument-3.20.2-6.27 is installed
  • OR evince-plugin-psdocument-3.20.2-6.27 is installed
  • OR evince-plugin-tiffdocument-3.20.2-6.27 is installed
  • OR evince-plugin-xpsdocument-3.20.2-6.27 is installed
  • OR libevdocument3-4-3.20.2-6.27 is installed
  • OR libevview3-3-3.20.2-6.27 is installed
  • OR nautilus-evince-3.20.2-6.27 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_176-94_88-default-4-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_24-4-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 15-LTSS is installed
  • AND permissions-20180125-3.27 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server for SAP Applications 15 is installed
  • AND Package Information
  • qemu-2.11.2-9.36 is installed
  • OR qemu-block-curl-2.11.2-9.36 is installed
  • OR qemu-block-iscsi-2.11.2-9.36 is installed
  • OR qemu-block-rbd-2.11.2-9.36 is installed
  • OR qemu-block-ssh-2.11.2-9.36 is installed
  • OR qemu-guest-agent-2.11.2-9.36 is installed
  • OR qemu-ipxe-1.0.0+-9.36 is installed
  • OR qemu-kvm-2.11.2-9.36 is installed
  • OR qemu-lang-2.11.2-9.36 is installed
  • OR qemu-ppc-2.11.2-9.36 is installed
  • OR qemu-seabios-1.11.0-9.36 is installed
  • OR qemu-sgabios-8-9.36 is installed
  • OR qemu-tools-2.11.2-9.36 is installed
  • OR qemu-vgabios-1.11.0-9.36 is installed
  • OR qemu-x86-2.11.2-9.36 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 is installed
  • AND icedtea-web-1.7.2-3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 SP1 is installed
  • AND Package Information
  • MozillaThunderbird-60.8.0-3.46 is installed
  • OR MozillaThunderbird-translations-common-60.8.0-3.46 is installed
  • OR MozillaThunderbird-translations-other-60.8.0-3.46 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 SP2 is installed
  • AND Package Information
  • freerdp-2.1.2-15.10 is installed
  • OR freerdp-devel-2.1.2-15.10 is installed
  • OR libfreerdp2-2.1.2-15.10 is installed
  • OR libwinpr2-2.1.2-15.10 is installed
  • OR winpr2-devel-2.1.2-15.10 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND python-Jinja2-2.7.3-15 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • xen-4.7.6_04-43.39 is installed
  • OR xen-doc-html-4.7.6_04-43.39 is installed
  • OR xen-libs-4.7.6_04-43.39 is installed
  • OR xen-libs-32bit-4.7.6_04-43.39 is installed
  • OR xen-tools-4.7.6_04-43.39 is installed
  • OR xen-tools-domU-4.7.6_04-43.39 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • libmariadb3-3.0.3-3.3 is installed
  • OR mariadb-10.2.15-4.3 is installed
  • OR mariadb-client-10.2.15-4.3 is installed
  • OR mariadb-connector-c-3.0.3-3.3 is installed
  • OR mariadb-errormessages-10.2.15-4.3 is installed
  • OR mariadb-galera-10.2.15-4.3 is installed
  • OR mariadb-tools-10.2.15-4.3 is installed
  • OR xtrabackup-2.4.10-4.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • ruby2.1-rubygem-activejob-4_2-4.2.9-3.6 is installed
  • OR rubygem-activejob-4_2-4.2.9-3.6 is installed
  • BACK