Oval Definition:oval:org.opensuse.security:def:51310
Revision Date:2020-12-01Version:1
Title:Security update for python (Moderate)
Description:

This update for python fixes the following issues:

Security issues fixed:

- CVE-2019-9674: Improved the documentation, warning about dangers of zip-bombs (bsc#1162825). - CVE-2020-8492: Fixed a regular expression in urrlib that was prone to denial of service via HTTP (bsc#1162367).
Family:unixClass:patch
Status:Reference(s):1013708
1013712
1013893
1015171
1051510
1051979
1054914
1055117
1061840
1065600
1065729
1066110
1071995
1077761
1082555
1086274
1086314
1087081
1089343
1094741
1099811
1099813
1099844
1099845
1099846
1099849
1099858
1099863
1099864
1100132
1100352
1101116
1101331
1101669
1101828
1101832
1101833
1101837
1101839
1101841
1101843
1101844
1101845
1101847
1101852
1101853
1101867
1101872
1101874
1101875
1101882
1101883
1101885
1101887
1101890
1101891
1101893
1101895
1101896
1101900
1101902
1101903
1102003
1102004
1102005
1102007
1102633
1102658
1103097
1103356
1103421
1103517
1103723
1103724
1103725
1103726
1103727
1103728
1103729
1103730
1103917
1103920
1103948
1103949
1104066
1104111
1104174
1104211
1104319
1104967
1109158
1111666
1113722
1114279
1119086
1123034
1127988
1129452
1129715
1131304
1137069
1137526
1137865
1137959
1137982
1140155
1141013
1141322
1142076
1142635
1144903
1146042
1146519
1146540
1146664
1148133
1148712
1148868
1149313
1149446
1149555
1149651
1150305
1150381
1150423
1150846
1151067
1151192
1151350
1151610
1151661
1151662
1151667
1151680
1151891
1151955
1152024
1152025
1152026
1152161
1152187
1152243
1152325
1152457
1152460
1152466
1152525
1152972
1152974
1152975
1153108
1153158
1153161
1154064
1158527
1159819
1162202
1162224
1162367
1162675
1162825
1169365
1171252
1171254
1177513
1177729
CVE-2012-4453
CVE-2013-2492
CVE-2014-8484
CVE-2014-8485
CVE-2014-8501
CVE-2014-8502
CVE-2014-8503
CVE-2014-8504
CVE-2014-8737
CVE-2014-8738
CVE-2015-3294
CVE-2016-9797
CVE-2016-9798
CVE-2016-9802
CVE-2016-9917
CVE-2017-18595
CVE-2018-10876
CVE-2018-10877
CVE-2018-10878
CVE-2018-10879
CVE-2018-10880
CVE-2018-10881
CVE-2018-10882
CVE-2018-10883
CVE-2018-13301
CVE-2018-14434
CVE-2018-14435
CVE-2018-14436
CVE-2018-14437
CVE-2018-18508
CVE-2018-3620
CVE-2018-3646
CVE-2018-5391
CVE-2019-10220
CVE-2019-11745
CVE-2019-12730
CVE-2019-14821
CVE-2019-15291
CVE-2019-17006
CVE-2019-17133
CVE-2019-17542
CVE-2019-18634
CVE-2019-9506
CVE-2019-9674
CVE-2019-9718
CVE-2020-12351
CVE-2020-12653
CVE-2020-12654
CVE-2020-25645
CVE-2020-8492
SUSE-SU-2018:2381-1
SUSE-SU-2018:2475-1
SUSE-SU-2019:1353-1
SUSE-SU-2019:2710-1
SUSE-SU-2019:2829-1
SUSE-SU-2019:3184-2
SUSE-SU-2019:3395-1
SUSE-SU-2020:0408-1
SUSE-SU-2020:0510-1
SUSE-SU-2020:1177-1
Platform(s):openSUSE Leap 15.0
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 12
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Desktop 12 SP4
SUSE Linux Enterprise Module for additional PackageHub packages 15 SP1
SUSE Linux Enterprise Module for Desktop Applications 15 SP1
SUSE Linux Enterprise Module for Development Tools 15
SUSE Linux Enterprise Module for Live Patching 15
SUSE Linux Enterprise Module for Live Patching 15 SP1
SUSE Linux Enterprise Module for Server Applications 15 SP1
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 15-LTSS
SUSE Linux Enterprise Workstation Extension 15
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND bubblewrap-0.2.0-lp150.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP2 is installed
  • AND Package Information
  • xen-4.1.5_02-0.5 is installed
  • OR xen-doc-html-4.1.5_02-0.5 is installed
  • OR xen-doc-pdf-4.1.5_02-0.5 is installed
  • OR xen-kmp-default-4.1.5_02_3.0.74_0.6.10-0.5 is installed
  • OR xen-kmp-pae-4.1.5_02_3.0.74_0.6.10-0.5 is installed
  • OR xen-kmp-trace-4.1.5_02_3.0.74_0.6.10-0.5 is installed
  • OR xen-libs-4.1.5_02-0.5 is installed
  • OR xen-libs-32bit-4.1.5_02-0.5 is installed
  • OR xen-tools-4.1.5_02-0.5 is installed
  • OR xen-tools-domU-4.1.5_02-0.5 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • kde4-l10n-ar-4.3.5-0.3 is installed
  • OR kde4-l10n-cs-4.3.5-0.3 is installed
  • OR kde4-l10n-da-4.3.5-0.3 is installed
  • OR kde4-l10n-da-data-4.3.5-0.3 is installed
  • OR kde4-l10n-da-doc-4.3.5-0.3 is installed
  • OR kde4-l10n-de-4.3.5-0.3 is installed
  • OR kde4-l10n-de-data-4.3.5-0.3 is installed
  • OR kde4-l10n-de-doc-4.3.5-0.3 is installed
  • OR kde4-l10n-en_GB-4.3.5-0.3 is installed
  • OR kde4-l10n-es-4.3.5-0.3 is installed
  • OR kde4-l10n-es-data-4.3.5-0.3 is installed
  • OR kde4-l10n-es-doc-4.3.5-0.3 is installed
  • OR kde4-l10n-fr-4.3.5-0.3 is installed
  • OR kde4-l10n-fr-data-4.3.5-0.3 is installed
  • OR kde4-l10n-fr-doc-4.3.5-0.3 is installed
  • OR kde4-l10n-hu-4.3.5-0.3 is installed
  • OR kde4-l10n-it-4.3.5-0.3 is installed
  • OR kde4-l10n-it-data-4.3.5-0.3 is installed
  • OR kde4-l10n-it-doc-4.3.5-0.3 is installed
  • OR kde4-l10n-ja-4.3.5-0.3 is installed
  • OR kde4-l10n-ko-4.3.5-0.3 is installed
  • OR kde4-l10n-nb-4.3.5-0.3 is installed
  • OR kde4-l10n-nl-4.3.5-0.3 is installed
  • OR kde4-l10n-nl-data-4.3.5-0.3 is installed
  • OR kde4-l10n-nl-doc-4.3.5-0.3 is installed
  • OR kde4-l10n-pl-4.3.5-0.3 is installed
  • OR kde4-l10n-pl-data-4.3.5-0.3 is installed
  • OR kde4-l10n-pl-doc-4.3.5-0.3 is installed
  • OR kde4-l10n-pt-4.3.5-0.3 is installed
  • OR kde4-l10n-pt_BR-4.3.5-0.3 is installed
  • OR kde4-l10n-pt_BR-data-4.3.5-0.3 is installed
  • OR kde4-l10n-pt_BR-doc-4.3.5-0.3 is installed
  • OR kde4-l10n-ru-4.3.5-0.3 is installed
  • OR kde4-l10n-ru-data-4.3.5-0.3 is installed
  • OR kde4-l10n-ru-doc-4.3.5-0.3 is installed
  • OR kde4-l10n-sv-4.3.5-0.3 is installed
  • OR kde4-l10n-sv-data-4.3.5-0.3 is installed
  • OR kde4-l10n-sv-doc-4.3.5-0.3 is installed
  • OR kde4-l10n-zh_CN-4.3.5-0.3 is installed
  • OR kde4-l10n-zh_TW-4.3.5-0.3 is installed
  • OR kdebase4-runtime-4.3.5-0.3 is installed
  • OR kdebase4-runtime-xine-4.3.5-0.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 is installed
  • AND libfbembed2_5-2.5.2.26539-13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND binutils-2.25.0-13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • file-5.19-9 is installed
  • OR file-magic-5.19-9 is installed
  • OR libmagic1-5.19-9 is installed
  • OR libmagic1-32bit-5.19-9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND Package Information
  • DirectFB-1.7.1-6 is installed
  • OR lib++dfb-1_7-1-1.7.1-6 is installed
  • OR libdirectfb-1_7-1-1.7.1-6 is installed
  • OR libdirectfb-1_7-1-32bit-1.7.1-6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP4 is installed
  • AND Package Information
  • DirectFB-1.7.1-6 is installed
  • OR lib++dfb-1_7-1-1.7.1-6 is installed
  • OR libdirectfb-1_7-1-1.7.1-6 is installed
  • OR libdirectfb-1_7-1-32bit-1.7.1-6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for additional PackageHub packages 15 SP1 is installed
  • AND Package Information
  • ffmpeg-3.4.2-4.27 is installed
  • OR libavdevice57-3.4.2-4.27 is installed
  • OR libavfilter6-3.4.2-4.27 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Desktop Applications 15 SP1 is installed
  • AND Package Information
  • python-2.7.17-7.35 is installed
  • OR python-tk-2.7.17-7.35 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Development Tools 15 is installed
  • AND Package Information
  • ImageMagick-7.0.7.34-3.14 is installed
  • OR perl-PerlMagick-7.0.7.34-3.14 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Live Patching 15 is installed
  • AND Package Information
  • kernel-default-4.12.14-25.13 is installed
  • OR kernel-default-livepatch-4.12.14-25.13 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Live Patching 15 SP1 is installed
  • AND Package Information
  • kernel-default-4.12.14-197.21 is installed
  • OR kernel-default-livepatch-4.12.14-197.21 is installed
  • OR kernel-default-livepatch-devel-4.12.14-197.21 is installed
  • OR kernel-livepatch-4_12_14-197_21-default-1-3.3 is installed
  • OR kernel-livepatch-SLE15-SP1_Update_6-1-3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Server Applications 15 SP1 is installed
  • AND Package Information
  • libfreebl3-hmac-3.47.1-3.22 is installed
  • OR libsoftokn3-hmac-3.47.1-3.22 is installed
  • OR mozilla-nss-3.47.1-3.22 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • libgudev-1_0-0-210-83 is installed
  • OR libgudev-1_0-0-32bit-210-83 is installed
  • OR libudev1-210-83 is installed
  • OR libudev1-32bit-210-83 is installed
  • OR systemd-210-83 is installed
  • OR systemd-32bit-210-83 is installed
  • OR systemd-bash-completion-210-83 is installed
  • OR systemd-sysvinit-210-83 is installed
  • OR udev-210-83 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • libecpg6-9.6.4-3.6 is installed
  • OR libpq5-9.6.4-3.6 is installed
  • OR libpq5-32bit-9.6.4-3.6 is installed
  • OR postgresql96-9.6.4-3.6 is installed
  • OR postgresql96-contrib-9.6.4-3.6 is installed
  • OR postgresql96-docs-9.6.4-3.6 is installed
  • OR postgresql96-libs-9.6.4-3.6 is installed
  • OR postgresql96-server-9.6.4-3.6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • colord-gtk-lang-0.1.26-6 is installed
  • OR libcolord-gtk1-0.1.26-6 is installed
  • OR libcolord2-1.3.3-10 is installed
  • OR libcolord2-32bit-1.3.3-10 is installed
  • OR libcolorhug2-1.3.3-10 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • libzypp-16.17.20-27.52 is installed
  • OR zypper-1.13.45-18.33 is installed
  • OR zypper-log-1.13.45-18.33 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • postgresql96-9.6.15-3.29 is installed
  • OR postgresql96-contrib-9.6.15-3.29 is installed
  • OR postgresql96-docs-9.6.15-3.29 is installed
  • OR postgresql96-libs-9.6.15-3.29 is installed
  • OR postgresql96-plperl-9.6.15-3.29 is installed
  • OR postgresql96-plpython-9.6.15-3.29 is installed
  • OR postgresql96-pltcl-9.6.15-3.29 is installed
  • OR postgresql96-server-9.6.15-3.29 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • libdcerpc-binding0-4.4.2-38.20 is installed
  • OR libdcerpc-binding0-32bit-4.4.2-38.20 is installed
  • OR libdcerpc0-4.4.2-38.20 is installed
  • OR libdcerpc0-32bit-4.4.2-38.20 is installed
  • OR libndr-krb5pac0-4.4.2-38.20 is installed
  • OR libndr-krb5pac0-32bit-4.4.2-38.20 is installed
  • OR libndr-nbt0-4.4.2-38.20 is installed
  • OR libndr-nbt0-32bit-4.4.2-38.20 is installed
  • OR libndr-standard0-4.4.2-38.20 is installed
  • OR libndr-standard0-32bit-4.4.2-38.20 is installed
  • OR libndr0-4.4.2-38.20 is installed
  • OR libndr0-32bit-4.4.2-38.20 is installed
  • OR libnetapi0-4.4.2-38.20 is installed
  • OR libnetapi0-32bit-4.4.2-38.20 is installed
  • OR libsamba-credentials0-4.4.2-38.20 is installed
  • OR libsamba-credentials0-32bit-4.4.2-38.20 is installed
  • OR libsamba-errors0-4.4.2-38.20 is installed
  • OR libsamba-errors0-32bit-4.4.2-38.20 is installed
  • OR libsamba-hostconfig0-4.4.2-38.20 is installed
  • OR libsamba-hostconfig0-32bit-4.4.2-38.20 is installed
  • OR libsamba-passdb0-4.4.2-38.20 is installed
  • OR libsamba-passdb0-32bit-4.4.2-38.20 is installed
  • OR libsamba-util0-4.4.2-38.20 is installed
  • OR libsamba-util0-32bit-4.4.2-38.20 is installed
  • OR libsamdb0-4.4.2-38.20 is installed
  • OR libsamdb0-32bit-4.4.2-38.20 is installed
  • OR libsmbclient0-4.4.2-38.20 is installed
  • OR libsmbclient0-32bit-4.4.2-38.20 is installed
  • OR libsmbconf0-4.4.2-38.20 is installed
  • OR libsmbconf0-32bit-4.4.2-38.20 is installed
  • OR libsmbldap0-4.4.2-38.20 is installed
  • OR libsmbldap0-32bit-4.4.2-38.20 is installed
  • OR libtevent-util0-4.4.2-38.20 is installed
  • OR libtevent-util0-32bit-4.4.2-38.20 is installed
  • OR libwbclient0-4.4.2-38.20 is installed
  • OR libwbclient0-32bit-4.4.2-38.20 is installed
  • OR samba-4.4.2-38.20 is installed
  • OR samba-client-4.4.2-38.20 is installed
  • OR samba-client-32bit-4.4.2-38.20 is installed
  • OR samba-doc-4.4.2-38.20 is installed
  • OR samba-libs-4.4.2-38.20 is installed
  • OR samba-libs-32bit-4.4.2-38.20 is installed
  • OR samba-winbind-4.4.2-38.20 is installed
  • OR samba-winbind-32bit-4.4.2-38.20 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • aaa_base-13.2+git20140911.61c1681-36 is installed
  • OR aaa_base-extras-13.2+git20140911.61c1681-36 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • ibus-1.5.13-15.11 is installed
  • OR ibus-gtk-1.5.13-15.11 is installed
  • OR ibus-gtk3-1.5.13-15.11 is installed
  • OR ibus-lang-1.5.13-15.11 is installed
  • OR libibus-1_0-5-1.5.13-15.11 is installed
  • OR typelib-1_0-IBus-1_0-1.5.13-15.11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • java-1_7_1-ibm-1.7.1_sr4.50-38.41 is installed
  • OR java-1_7_1-ibm-alsa-1.7.1_sr4.50-38.41 is installed
  • OR java-1_7_1-ibm-jdbc-1.7.1_sr4.50-38.41 is installed
  • OR java-1_7_1-ibm-plugin-1.7.1_sr4.50-38.41 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • java-1_7_0-openjdk-1.7.0.241-43.30 is installed
  • OR java-1_7_0-openjdk-demo-1.7.0.241-43.30 is installed
  • OR java-1_7_0-openjdk-devel-1.7.0.241-43.30 is installed
  • OR java-1_7_0-openjdk-headless-1.7.0.241-43.30 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • libblkid1-2.29.2-3.12 is installed
  • OR libblkid1-32bit-2.29.2-3.12 is installed
  • OR libfdisk1-2.29.2-3.12 is installed
  • OR libmount1-2.29.2-3.12 is installed
  • OR libmount1-32bit-2.29.2-3.12 is installed
  • OR libsmartcols1-2.29.2-3.12 is installed
  • OR libuuid1-2.29.2-3.12 is installed
  • OR libuuid1-32bit-2.29.2-3.12 is installed
  • OR python-libmount-2.29.2-3.12 is installed
  • OR util-linux-2.29.2-3.12 is installed
  • OR util-linux-lang-2.29.2-3.12 is installed
  • OR util-linux-systemd-2.29.2-3.12 is installed
  • OR uuidd-2.29.2-3.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • libMagickCore-6_Q16-1-6.8.8.1-71.85 is installed
  • OR libMagickWand-6_Q16-1-6.8.8.1-71.85 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 15-LTSS is installed
  • AND Package Information
  • rpmlint-1.10-7.12 is installed
  • OR rpmlint-mini-1.10-5.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Workstation Extension 15 is installed
  • AND Package Information
  • bluez-5.48-5.16 is installed
  • OR bluez-cups-5.48-5.16 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • java-1_8_0-ibm-1.8.0_sr5.15-30.33 is installed
  • OR java-1_8_0-ibm-alsa-1.8.0_sr5.15-30.33 is installed
  • OR java-1_8_0-ibm-devel-1.8.0_sr5.15-30.33 is installed
  • OR java-1_8_0-ibm-plugin-1.8.0_sr5.15-30.33 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • bzip2-1.0.6-30.8 is installed
  • OR bzip2-doc-1.0.6-30.8 is installed
  • OR libbz2-1-1.0.6-30.8 is installed
  • OR libbz2-1-32bit-1.0.6-30.8 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND python-SQLAlchemy-1.1.12-3.5 is installed
  • BACK